ZeroHour

CVE-2020-27846

PoC
CVSS 3.1
9.8 critical
EPSS
5%p92
Published
()
Modified
Description

A signature verification vulnerability exists in crewjam/saml. This flaw allows an attacker to bypass SAML Authentication. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

Vendors
grafanasaml projectredhatfedoraproject
Products
grafana, saml, openshift container platform, openshift service mesh, enterprise linux, fedora
Weakness
CWE-115
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.