Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-94mj-cc39-hffh

Опубликовано: 15 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.1
CVSS3: 6.5

Описание

When the BIG-IP system is configured as both a Security Assertion Markup Language (SAML) service provider (SP) and Identity Provider (IdP), with single logout (SLO) enabled on an access policy, undisclosed requests can cause an increase in memory resource utilization.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

When the BIG-IP system is configured as both a Security Assertion Markup Language (SAML) service provider (SP) and Identity Provider (IdP), with single logout (SLO) enabled on an access policy, undisclosed requests can cause an increase in memory resource utilization.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

EPSS

Процентиль: 30%
0.00112
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 6.5
nvd
4 месяца назад

When the BIG-IP system is configured as both a Security Assertion Markup Language (SAML) service provider (SP) and Identity Provider (IdP), with single logout (SLO) enabled on an access policy, undisclosed requests can cause an increase in memory resource utilization.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

EPSS

Процентиль: 30%
0.00112
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-404