Improper Request Input Validation in Temporary Elevated Access Management for AWS IAM Identity Center
CVE-2025-1969
5.3MEDIUM
Key Information:
- Vendor
Aws
- Vendor
- CVE Published:
- 4 March 2025
What is CVE-2025-1969?
A vulnerability exists in the Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center, where improper input validation allows a user to modify valid requests and spoof approval processes within TEAM. This flaw could potentially lead to unauthorized actions being taken without valid authorization. Users are strongly advised to upgrade to the latest release, v1.2.2, and to follow the provided documentation for a comprehensive updating process.
Affected Version(s)
Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center 0 < 1.2.2