Lucene search

K

Saml Sp 2.0 Single Sign On Security Vulnerabilities

cve
cve

CVE-2022-26493

Xecurify's miniOrange Premium, Standard, and Enterprise Drupal SAML SP modules possess an authentication and authorization bypass vulnerability. An attacker with access to a HTTP-request intercepting method is able to bypass authentication and authorization by removing the SAML Assertion Signature ...

9.8CVSS

8.8AI Score

0.001EPSS

2022-06-03 06:15 PM
85
8