MEDIUM
Eduserv OpenAthens SP 2.0 for Java allows remote attackers to forge messages and bypass authentication via a SAML assertion that lacks a Signature element, aka a "Signature exclusion attack."
Published Oct 9, 2012
5.8
MEDIUMCVSS 2.0
EPSS 2.15%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.