Red Hat Keycloak是美国红帽(Red Hat)公司的一套为现代应用和服务提供身份验证和管理功能的软件。 Red Hat Keycloak 存在安全漏洞,该漏洞源于无法执行正确的身份验证。攻击者可以利用该漏洞把第二个身份认证因素与现有的身份验证因素一起注册到目标帐户,并只通过第二个因素完成认证。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat build of Keycloak 22 | 22.0.10-1 ~ * |
cpe:/a:redhat:build_keycloak:22::el9
|
|
| Red Hat | Red Hat build of Keycloak 22 | 22-13 ~ * |
cpe:/a:redhat:build_keycloak:22::el9
|
|
| Red Hat | Red Hat build of Keycloak 22 | 22-16 ~ * |
cpe:/a:redhat:build_keycloak:22::el9
|
|
| Red Hat | Red Hat build of Keycloak 22.0.10 | - |
cpe:/a:redhat:build_keycloak:22
|
|
| Red Hat | RHSSO 7.6.8 | - |
cpe:/a:redhat:red_hat_single_sign_on:7.6
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet