EXECUTIVE SUMMARY:
Multiple security vulnerabilities have been identified in OpenAM Community Edition versions prior to 16.1.1. These critical flaws expose the platform to authentication bypass, arbitrary OAuth token minting, and unsafe deserialization threats within the RADIUS, OAuth2, and Push Notification modules. Successful exploitation could allow unauthenticated remote attackers to impersonate any user, forge valid access tokens, or potentially execute arbitrary code depending on the deployment classpath. These vulnerabilities pose a severe risk to the integrity of identity management infrastructure, potentially leading to unauthorized access to sensitive applications and full compromise of user sessions.[/subscribe_to_unlock_form]
EXECUTIVE SUMMARY:
Multiple security vulnerabilities have been identified in OpenAM Community Edition versions prior to 16.1.1. These critical flaws expose the platform to authentication bypass, arbitrary OAuth token minting, and unsafe deserialization threats within the RADIUS, OAuth2, and Push Notification modules. Successful exploitation could allow unauthenticated remote attackers to impersonate any user, forge valid access tokens, or potentially execute arbitrary code depending on the deployment classpath. These vulnerabilities pose a severe risk to the integrity of identity management infrastructure, potentially leading to unauthorized access to sensitive applications and full compromise of user sessions.[emaillocker id="1283"]
These high-severity vulnerabilities present a critical risk to organizations relying on OpenAM for identity and access management, as they facilitate complete account takeover and potential system compromise. The relative ease of exploiting the authentication bypass and token minting flaws significantly increases the threat of unauthorized access to corporate resources. Immediate attention is required to prevent threat actors from leveraging these weaknesses to move laterally within the network or exfiltrate sensitive data.
RECOMMENDATION:
REFERENCES:
The following reports contain further technical details:
https://github.com/advisories/GHSA-386j-6m86-78f9
https://github.com/advisories/GHSA-cj8f-2fhf-826r
https://github.com/advisories/GHSA-pp89-732f-3g8q