CVE-2017-11430 PUBLISHED CVSS 7.699999809265137 HIGH

OmniAuth-SAML authentication bypass via incorrect XML canonicalization and DOM traversal

EPSS 0.44% · 62.8th percentile

Risk Scores

CVSS v3.0
7.699999809265137
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
EPSS Score
0.44%
62.8th percentile

Affected Products

VendorProductVersions
OmniAuthOmnitAuth-SAMLunspecified
omniauthomniauth_saml0
RubyGemsomniauth-saml0

Timeline

References

Open in Interactive Console →