Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Shibboleth XMLTooling-C before 1.6.4, as used in Shibboleth Service Provider before 2.6.1.4 on Windows and other products, mishandles digital signatures of user data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via crafted XML data. NOTE: this issue exists because of an incomplete fix for CVE-2018-0486.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Shibboleth for Windows Service Provider Shibboleth XMLTooling-C 安全漏洞
Vulnerability Description
Shibboleth for Windows是英国Shibboleth公司的一套基于Windows平台的开源的SAML协议的Web单点登录系统。Shibboleth Service Provider(SP)是其中的一个服务提供商组件。Shibboleth XMLTooling-C是其中的一个提供了XML处理接口的包。 基于Windows平台的Shibboleth SP 2.6.1.4之前的版本和其他产品中的Shibboleth XMLTooling-C 1.6.4之前版本存在安全漏洞,该漏洞源于程序没有正
CVSS Information
N/A
Vulnerability Type
N/A