Security Advisory

CVE-2017-1000452

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-01-02 17:00:00
Last updated 2024-09-17 04:13:52
Assigner mitre
State PUBLISHED

Description

An XML Signature Wrapping vulnerability exists in Samlify 2.2.0 and earlier, and in predecessor Express-saml2 which could allow attackers to impersonate arbitrary users.