Vulnerabilities > Simplesamlphp

DATE CVE VULNERABILITY TITLE RISK
2018-03-05 CVE-2018-7644 Improper Verification of Cryptographic Signature vulnerability in Simplesamlphp
The XmlSecLibs library as used in the saml2 library in SimpleSAMLphp before 1.15.3 incorrectly verifies signatures on SAML assertions, allowing a remote attacker to construct a crafted SAML assertion on behalf of an Identity Provider that would pass as cryptographically valid, thereby allowing them to impersonate a user from that Identity Provider, aka a key confusion issue.
network
low complexity
simplesamlphp CWE-347
7.5
2018-02-02 CVE-2017-18122 Improper Verification of Cryptographic Signature vulnerability in multiple products
A signature-validation bypass issue was discovered in SimpleSAMLphp through 1.14.16.
network
high complexity
simplesamlphp debian CWE-347
8.1
2018-02-02 CVE-2017-18121 Cross-site Scripting vulnerability in multiple products
The consentAdmin module in SimpleSAMLphp through 1.14.15 is vulnerable to a Cross-Site Scripting attack, allowing an attacker to craft links that could execute arbitrary JavaScript code on the victim's web browser.
network
low complexity
simplesamlphp debian CWE-79
6.1
2018-02-02 CVE-2018-6521 The sqlauth module in SimpleSAMLphp before 1.15.2 relies on the MySQL utf8 charset, which truncates queries upon encountering four-byte characters.
network
low complexity
simplesamlphp debian
critical
9.8
2018-02-02 CVE-2018-6520 Open Redirect vulnerability in Simplesamlphp
SimpleSAMLphp before 1.15.2 allows remote attackers to bypass an open redirect protection mechanism via crafted authority data in a URL.
network
low complexity
simplesamlphp CWE-601
6.1
2018-02-02 CVE-2018-6519 Injection vulnerability in multiple products
The SAML2 library before 1.10.4, 2.x before 2.3.5, and 3.x before 3.1.1 in SimpleSAMLphp has a Regular Expression Denial of Service vulnerability for fraction-of-seconds data in a timestamp.
network
low complexity
simplesamlphp debian CWE-74
7.5
2017-09-01 CVE-2017-12874 Improper Input Validation vulnerability in multiple products
The InfoCard module 1.0 for SimpleSAMLphp allows attackers to spoof XML messages by leveraging an incorrect check of return values in signature validation utilities.
network
low complexity
simplesamlphp debian CWE-20
7.5
2017-09-01 CVE-2017-12873 Session Fixation vulnerability in multiple products
SimpleSAMLphp 1.7.0 through 1.14.10 might allow attackers to obtain sensitive information, gain unauthorized access, or have unspecified other impacts by leveraging incorrect persistent NameID generation when an Identity Provider (IdP) is misconfigured.
network
low complexity
simplesamlphp debian CWE-384
critical
9.8
2017-09-01 CVE-2017-12872 Information Exposure vulnerability in multiple products
The (1) Htpasswd authentication source in the authcrypt module and (2) SimpleSAML_Session class in SimpleSAMLphp 1.14.11 and earlier allow remote attackers to conduct timing side-channel attacks by leveraging use of the standard comparison operator to compare secret material against user input.
network
high complexity
simplesamlphp debian CWE-200
5.9
2017-09-01 CVE-2017-12871 Inadequate Encryption Strength vulnerability in Simplesamlphp
The aesEncrypt method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.x through 1.14.11 makes it easier for context-dependent attackers to bypass the encryption protection mechanism by leveraging use of the first 16 bytes of the secret key as the initialization vector (IV).
network
high complexity
simplesamlphp CWE-326
5.9