Improper request input validation in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center allows a user to modify a valid request and spoof an approval in TEAM.
Upgrade TEAM to the latest release v.1.2.2. Follow instructions in updating TEAM documentation for updating process
References
Configurations
No configuration.
History
No history.
Information
Published : 2025-03-04 19:15
Updated : 2025-10-14 20:15
NVD link : CVE-2025-1969
Mitre link : CVE-2025-1969
CVE.ORG link : CVE-2025-1969
JSON object : View
Products Affected
No product.
CWE
CWE-807
Reliance on Untrusted Inputs in a Security Decision
