OktaOKTA-1SIAAPF
Okta Verify for Windows Auto-update Arbitrary Code Execution CVE-2024-0980 - Mar 26, 2024
UnratedCVE-2024-0980 · Published Mar 26, 2024
The Auto-update service for Okta Verify for Windows is vulnerable to two flaws which in combination could be used to execute arbitrary code.
Affected versions
The source does not list versions here. See the source advisory for affected products and fixes.
Details and references
More Okta advisories
All Okta| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Nov 12024 | Okta AD/LDAP Delegated Authentication - Username Above 52 Characters Security Advisory... | Unrated | No fix yet |
| Oct 242024 | Okta Verify for iOS ContextExtension CVE-2024-10327 - Oct 24, 2024 | Unrated | No fix yet |
| Oct 42024 | Okta Classic Application Sign-On Policy Bypass - Oct 4, 2024 | Unrated | No fix yet |
| Aug 72024 | Okta Verify for Windows Privilege Escalation CVE-2024-7061 - Aug 7, 2024 | Unrated | No fix yet |
| Jul 222024 | Okta Browser Plugin Reflected Cross-Site Scripting CVE-2024-0981 - Jul 22, 2024 | Unrated | No fix yet |
| Sep 192023 | Okta LDAP Agent CVE-2023-0392 - Sep 19, 2023 | Unrated | No fix yet |