Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CA SiteMinder Federation (FSS) 12.5, 12.0, and r6; Federation (Standalone) 12.1 and 12.0; Agent for SharePoint 2010; and SiteMinder for Secure Proxy Server 6.0, 12.0, and 12.5 does not properly verify XML signatures for SAML statements, which allows remote attackers to spoof other users and gain privileges.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
多款CA SiteMinder产品SAML声明签名验证漏洞
Vulnerability Description
CA(Computer Associates) SiteMinder是美国CA公司的一套集中式Web访问控制管理系统。该系统对Web应用和门户提供了单点登录、认证管理、基于策略的授权等功能。 CA SiteMinder Federation (FSS) 12.5,12.0,r6版本;Federation (Standalone) 12.1和12.0版本;Agent for SharePoint 2010;SiteMinder for Secure Proxy Server 6.0,12.0,12.5版本中
CVSS Information
N/A
Vulnerability Type
N/A