Lucene search

K
cvelistMitreCVELIST:CVE-2014-2296
HistoryJul 20, 2018 - 5:00 p.m.

CVE-2014-2296

2018-07-2017:00:00
mitre
www.cve.org
1

AI Score

8.9

Confidence

High

EPSS

0.004

Percentile

74.9%

XML external entity (XXE) vulnerability in java/org/jasig/cas/util/SamlUtils.java in Jasig CAS server before 3.4.12.1 and 3.5.x before 3.5.2.1, when Google Accounts Integration is enabled, allows remote unauthenticated users to bypass authentication via crafted XML data.

AI Score

8.9

Confidence

High

EPSS

0.004

Percentile

74.9%

Related for CVELIST:CVE-2014-2296