关键信息 漏洞编号: CVE-2025-23389 漏洞描述: Rancher: Improper Account Binding Validation in SAML Authentication Enables User Impersonation on First Login 状态: NEW 产品: SUSE Security Incidents 组件: Incidents 优先级: P5 - None Severity: Critical 报告人: Andy Pitcher 报告时间: 2025-02-04 12:54 UTC 修改时间: 2025-02-28 07:52 UTC URL: https://github.com/rancherlabs/embarg... 描述 A vulnerability in Rancher has been discovered, leading to a local user impersonation through SAML Authentication on first login. The issue arises when a SAML authentication provider (AP) is configured (e.g., Keycloak), a newly created AP user can impersonate any user on Rancher by manipulating certain cookie values during the first login against Rancher. 评论 Marcus Meissner: CVE-2025-23389 Johannes Segitz: public