Tag
high
advisory
Shibboleth Service Provider SQL Injection Vulnerability
1 TTPA remote, unauthenticated attacker can exploit a SQL Injection vulnerability within the Shibboleth Service Provider software, allowing them to perform unauthorized database queries and potentially extract or manipulate sensitive data.
Shibboleth Service Provider
sql-injection
web-vulnerability
authentication
shibboleth
1t
medium
advisory
Multiple Vulnerabilities in Shibboleth Products Leading to DoS and Security Policy Bypass
2 rules 1 TTP 1 CVEMultiple vulnerabilities have been discovered in Shibboleth Identity Provider and OpenSAML Java library that allow an attacker to cause a remote denial of service and security policy bypass, addressed in versions 5.2.2 and later.
Identity Provider +1
shibboleth
denial-of-service
security-policy-bypass
2r
1t
1c