Количество 2
Количество 2
CVE-2018-1000165
LightSAML version prior to 1.3.5 contains a Incorrect Access Control vulnerability in signature validation in readers in src/LightSaml/Model/XmlDSig/ that can result in impersonation of any user from Identity Provider. This vulnerability appears to have been fixed in 1.3.5 and later.
GHSA-vg4f-8v9q-5c3x
LightSAML Incorrect Access Control vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-1000165 LightSAML version prior to 1.3.5 contains a Incorrect Access Control vulnerability in signature validation in readers in src/LightSaml/Model/XmlDSig/ that can result in impersonation of any user from Identity Provider. This vulnerability appears to have been fixed in 1.3.5 and later. | CVSS3: 7.5 | 0% Низкий | почти 8 лет назад | |
GHSA-vg4f-8v9q-5c3x LightSAML Incorrect Access Control vulnerability | CVSS3: 7.5 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу