CVE-2015-0277 PUBLISHED CVSS 6 MEDIUM

The Service Provider (SP) in PicketLink before 2.7.0 does not ensure that it is a member of an Audience element when an AudienceRestriction is specified, which allows remote attackers to log in to other users' accounts via a crafted SAML assertion. NOTE: this identifier has been SPLIT per ADT2 due to different vulnerability types. See CVE-2015-6254 for lack of validation for the Destination attribute in a Response element in a SAML assertion.

EPSS 0.53% · 67.1th percentile

Risk Scores

CVSS v2.0
6
EPSS Score
0.53%
67.1th percentile

Affected Products

VendorProductVersions
n/an/an/a
picketlinkpicketlink0

Timeline

References

Open in Interactive Console →