TROYANOSYVIRUS
Voltar para CVEs

CVE-2016-9955

N/A

Descricao

The SimpleSAML_XML_Validator class constructor in SimpleSAMLphp before 1.14.11 might allow remote attackers to spoof signatures on SAML 1 responses or possibly cause a denial of service (memory consumption) by leveraging improper conversion of return values to boolean.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado2/17/2017
Ultima modificacao4/20/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

debian:debian_linuxsimplesamlphp:simplesamlphp

Fraquezas (CWE)

CWE-20

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.