CVE-2015-6671

Publication date

2017-03-13 07:12:00

Family

mitre

State

PUBLISHED

Description

Open edX edx-platform before 2015-08-25 requires use of the database for storage of SAML SSO secrets, which makes it easier for context-dependent attackers to obtain sensitive information by leveraging access to a database backup.