Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 4

Количество 4

ubuntu логотип

CVE-2012-2351

около 14 лет назад

The default configuration of the auth/saml plugin in Mahara before 1.4.2 sets the "Match username attribute to Remote username" option to false, which allows remote SAML IdP servers to spoof users of other SAML IdP servers by using the same internal username.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2012-2351

около 14 лет назад

The default configuration of the auth/saml plugin in Mahara before 1.4.2 sets the "Match username attribute to Remote username" option to false, which allows remote SAML IdP servers to spoof users of other SAML IdP servers by using the same internal username.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2012-2351

около 14 лет назад

The default configuration of the auth/saml plugin in Mahara before 1.4 ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-89p4-jjm9-97vr

больше 4 лет назад

The default configuration of the auth/saml plugin in Mahara before 1.4.2 sets the "Match username attribute to Remote username" option to false, which allows remote SAML IdP servers to spoof users of other SAML IdP servers by using the same internal username.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-2351

The default configuration of the auth/saml plugin in Mahara before 1.4.2 sets the "Match username attribute to Remote username" option to false, which allows remote SAML IdP servers to spoof users of other SAML IdP servers by using the same internal username.

CVSS2: 5
2%
Низкий
около 14 лет назад
nvd логотип
CVE-2012-2351

The default configuration of the auth/saml plugin in Mahara before 1.4.2 sets the "Match username attribute to Remote username" option to false, which allows remote SAML IdP servers to spoof users of other SAML IdP servers by using the same internal username.

CVSS2: 5
2%
Низкий
около 14 лет назад
debian логотип
CVE-2012-2351

The default configuration of the auth/saml plugin in Mahara before 1.4 ...

CVSS2: 5
2%
Низкий
около 14 лет назад
github логотип
GHSA-89p4-jjm9-97vr

The default configuration of the auth/saml plugin in Mahara before 1.4.2 sets the "Match username attribute to Remote username" option to false, which allows remote SAML IdP servers to spoof users of other SAML IdP servers by using the same internal username.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу