Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
SimpleSAMLphp xml-common XXE vulnerability
Vulnerability Description
SimpleSAMLphp xml-common is a common classes for handling XML-structures. When loading an (untrusted) XML document, for example the SAMLResponse, it's possible to induce an XXE. This vulnerability is fixed in 1.19.0.
CVSS Information
N/A
Vulnerability Type
XML外部实体引用的不恰当限制(XXE)
Vulnerability Title
SimpleSAMLphp 安全漏洞
Vulnerability Description
SimpleSAMLphp是一款实现了SAML 2.0服务提供者和标识提供者功能的PHP身份验证应用程序。 SimpleSAMLphp存在安全漏洞,该漏洞源于xml-common加载不受信任的XML文档时,会诱发XML外部实体注入。
CVSS Information
N/A
Vulnerability Type
N/A