Количество 9
Количество 9
CVE-2018-0486
Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Provider before 2.6.0 on Windows and other products, mishandles digital signatures of user attribute data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via a crafted DTD.
CVE-2018-0486
Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Provider before 2.6.0 on Windows and other products, mishandles digital signatures of user attribute data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via a crafted DTD.
CVE-2018-0486
Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Provider before 2.6.0 on Windows and other products, mishandles digital signatures of user attribute data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via a crafted DTD.
CVE-2018-0486
Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Pr ...
openSUSE-SU-2018:0158-1
Security update for xmltooling
SUSE-SU-2018:0140-1
Security update for xmltooling
GHSA-34v3-mf7p-7v76
Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Provider before 2.6.0 on Windows and other products, mishandles digital signatures of user attribute data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via a crafted DTD.
openSUSE-SU-2018:0738-1
Security update for xmltooling
SUSE-SU-2018:0720-1
Security update for xmltooling
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-0486 Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Provider before 2.6.0 on Windows and other products, mishandles digital signatures of user attribute data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via a crafted DTD. | CVSS3: 6.5 | 1% Низкий | около 8 лет назад | |
CVE-2018-0486 Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Provider before 2.6.0 on Windows and other products, mishandles digital signatures of user attribute data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via a crafted DTD. | CVSS3: 8.7 | 1% Низкий | около 8 лет назад | |
CVE-2018-0486 Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Provider before 2.6.0 on Windows and other products, mishandles digital signatures of user attribute data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via a crafted DTD. | CVSS3: 6.5 | 1% Низкий | около 8 лет назад | |
CVE-2018-0486 Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Pr ... | CVSS3: 6.5 | 1% Низкий | около 8 лет назад | |
openSUSE-SU-2018:0158-1 Security update for xmltooling | 1% Низкий | около 8 лет назад | ||
SUSE-SU-2018:0140-1 Security update for xmltooling | 1% Низкий | около 8 лет назад | ||
GHSA-34v3-mf7p-7v76 Shibboleth XMLTooling-C before 1.6.3, as used in Shibboleth Service Provider before 2.6.0 on Windows and other products, mishandles digital signatures of user attribute data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via a crafted DTD. | CVSS3: 6.5 | 1% Низкий | больше 3 лет назад | |
openSUSE-SU-2018:0738-1 Security update for xmltooling | почти 8 лет назад | |||
SUSE-SU-2018:0720-1 Security update for xmltooling | почти 8 лет назад |
Уязвимостей на страницу