Логотип exploitDog
bind:CVE-2023-0657
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-0657

Количество 4

Количество 4

redhat логотип

CVE-2023-0657

почти 2 года назад

A flaw was found in Keycloak. This issue occurs due to improperly enforcing token types when validating signatures locally. This could allow an authenticated attacker to exchange a logout token for an access token and possibly gain access to data outside of enforced permissions.

CVSS3: 3.4
EPSS: Низкий
nvd логотип

CVE-2023-0657

около 1 года назад

A flaw was found in Keycloak. This issue occurs due to improperly enforcing token types when validating signatures locally. This could allow an authenticated attacker to exchange a logout token for an access token and possibly gain access to data outside of enforced permissions.

CVSS3: 3.4
EPSS: Низкий
debian логотип

CVE-2023-0657

около 1 года назад

A flaw was found in Keycloak. This issue occurs due to improperly enfo ...

CVSS3: 3.4
EPSS: Низкий
github логотип

GHSA-7fpj-9hr8-28vh

почти 2 года назад

Keycloak vulnerable to impersonation via logout token exchange

CVSS3: 3.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2023-0657

A flaw was found in Keycloak. This issue occurs due to improperly enforcing token types when validating signatures locally. This could allow an authenticated attacker to exchange a logout token for an access token and possibly gain access to data outside of enforced permissions.

CVSS3: 3.4
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2023-0657

A flaw was found in Keycloak. This issue occurs due to improperly enforcing token types when validating signatures locally. This could allow an authenticated attacker to exchange a logout token for an access token and possibly gain access to data outside of enforced permissions.

CVSS3: 3.4
0%
Низкий
около 1 года назад
debian логотип
CVE-2023-0657

A flaw was found in Keycloak. This issue occurs due to improperly enfo ...

CVSS3: 3.4
0%
Низкий
около 1 года назад
github логотип
GHSA-7fpj-9hr8-28vh

Keycloak vulnerable to impersonation via logout token exchange

CVSS3: 3.4
0%
Низкий
почти 2 года назад

Уязвимостей на страницу