CVE-2013-2279
21.03.2013, 17:55
CA SiteMinder Federation (FSS) 12.5, 12.0, and r6; Federation (Standalone) 12.1 and 12.0; Agent for SharePoint 2010; and SiteMinder for Secure Proxy Server 6.0, 12.0, and 12.5 does not properly verify XML signatures for SAML statements, which allows remote attackers to spoof other users and gain privileges.Enginsight
| Vendor | Product | Version |
|---|---|---|
| siteminder_agent_for_sharepoint | 2010 | * |
| siteminder_federation | 12.0 | * |
| siteminder_federation | 12.0 | - |
| siteminder_federation | 12.1 | - |
| siteminder_federation | 12.5 | * |
| siteminder_federation | r6.0 | * |
| siteminder_for_secure_proxy_server | 12.0 | * |
| siteminder_for_secure_proxy_server | 12.5 | * |
| siteminder_for_secure_proxy_server | 6.0 | * |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References