CVE-2016-10928
EUVD-2016-192222.08.2019, 20:15
The onelogin-saml-sso plugin before 2.2.0 for WordPress has a hardcoded @@@nopass@@@ password for just-in-time provisioned users.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| onelogin | onelogin_saml_sso | 𝑥 < 2.2.0 |
𝑥
= Vulnerable software versions
References