Логотип exploitDog
bind:CVE-2016-4464
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-4464

Количество 2

Количество 2

nvd логотип

CVE-2016-4464

больше 9 лет назад

The application plugins in Apache CXF Fediz 1.2.x before 1.2.3 and 1.3.x before 1.3.1 do not match SAML AudienceRestriction values against configured audience URIs, which might allow remote attackers to have bypass intended restrictions and have unspecified other impact via a crafted SAML token with a trusted signature.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-qpwj-mvv7-v3m9

больше 7 лет назад

High severity vulnerability that affects org.apache.cxf.fediz:fediz-spring and org.apache.cxf.fediz:fediz-spring2

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-4464

The application plugins in Apache CXF Fediz 1.2.x before 1.2.3 and 1.3.x before 1.3.1 do not match SAML AudienceRestriction values against configured audience URIs, which might allow remote attackers to have bypass intended restrictions and have unspecified other impact via a crafted SAML token with a trusted signature.

CVSS3: 9.8
2%
Низкий
больше 9 лет назад
github логотип
GHSA-qpwj-mvv7-v3m9

High severity vulnerability that affects org.apache.cxf.fediz:fediz-spring and org.apache.cxf.fediz:fediz-spring2

2%
Низкий
больше 7 лет назад

Уязвимостей на страницу