CyberRota Analysis
AI-GeneratedThe vulnerability affects the Okta Access Gateway, where unsanitized dashboard label values can be written into PHP configuration files. This flaw allows for potential code execution with the privileges of the web server process, posing a risk of unauthorized access or manipulation during authentication requests. Organizations utilizing Okta Access Gateway should prioritize addressing this issue to mitigate potential security breaches.
Original NVD Description
The Okta Access Gateway does not sanitize dashboard label values before writing them into generated PHP configuration files. The generated file is automatically included during authentication requests, resulting in execution with the privileges of the web server process.