Описание
PySAML2 allows remote attackers to conduct XML external entity (XXE) attacks via a crafted SAML XML request or response.
Ссылки
- Mailing ListThird Party Advisory
- VDB Entry
- Mailing ListThird Party Advisory
- Patch
- Issue TrackingPatch
- Issue TrackingPatch
- Mailing ListThird Party Advisory
- VDB Entry
- Mailing ListThird Party Advisory
- Patch
- Issue TrackingPatch
- Issue TrackingPatch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:pysaml2_project:pysaml2:-:*:*:*:*:*:*:*
EPSS
Процентиль: 64%
0.00471
Низкий
9 Critical
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-611
Связанные уязвимости
CVSS3: 9
ubuntu
почти 9 лет назад
PySAML2 allows remote attackers to conduct XML external entity (XXE) attacks via a crafted SAML XML request or response.
CVSS3: 7.3
redhat
около 9 лет назад
PySAML2 allows remote attackers to conduct XML external entity (XXE) attacks via a crafted SAML XML request or response.
CVSS3: 9
debian
почти 9 лет назад
PySAML2 allows remote attackers to conduct XML external entity (XXE) a ...
EPSS
Процентиль: 64%
0.00471
Низкий
9 Critical
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-611