CVE-2026-46623High· 7.4▾ TwilightOpen Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the OAuth2 authentication module updates an existing local account with profile attributes that can include userPassword and inetUserStatus, rewriting the…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 40.7 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 15.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.7%
— → 7.4
Last analysed / modified upstream
Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the OAuth2 authentication module updates an existing local account with profile attributes that can include userPassword and inetUserStatus, rewriting the password to the username and reactivating disabled accounts. The missing OAuth.removeRestrictedAccountUpdateAttributes filtering permits these credential and status fields to reach the account update. With account creation enabled, repeated OAuth login causes the default ldapService chain to accept the username as both identifier and password, allowing an unauthenticated attacker to take over the local account without interacting with the identity provider. The rewrite can be denied for usernames shorter than the configured minimum password length. This issue is fixed in version 16.1.1.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Affected packages:
org.openidentityplatform.openam:openam-auth-oauth2 < 16.1.1Patched in:
org.openidentityplatform.openam:openam-auth-oauth2 16.1.1Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-53660High· 7.4Open Access Management (OpenAM) is an access management solution
CVE-2026-47424High· 7.5Open Access Management (OpenAM) is an access management solution
CVE-2026-47426High· 7.6Open Access Management (OpenAM) is an access management solution
CVE-2026-48717Critical· 9.1Open Access Management (OpenAM) is an access management solution
CVE-2026-41573High· 7.1Open Access Management (OpenAM) is an access management solution
CVE-2026-44202Medium· 5.3Open Access Management (OpenAM) is an access management solution