CVE-2024-45589: Identityautomation Rapididentity
Medium severity, CVSS 5.9. EPSS: 0.9% chance of exploitation in the next 30 days.
RapidIdentity LTS through 2023.0.2 and Cloud through 2024.08.0 improperly restricts excessive authentication attempts and allows a remote attacker to cause a denial of service via the username parameters.
Affected products
- Identityautomation Rapididentity: up to and including 2023.0.2; up to and including 2024.08.0
Published 2024-09-05. Last modified 2026-06-17.