Red Hat Picketlink是美国红帽(Red Hat)公司的一个针对Java应用进行安全和身份认证管理的项目。 Red Hat PicketLink 2.7.0之前版本存在访问控制错误漏洞。攻击者利用该漏洞通过特制的SAML断言登录其他用户的帐户。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2015-6254 | Red Hat PicketLink Service Provider和Identity Provider 安全漏洞 | |
| CVE-2014-9743 | VideoLAN VLC Media Player 跨站脚本漏洞 | |
| CVE-2015-5531 | Elasticsearch 目录遍历漏洞 |
No comments yet