CVE-2018-1000602
26.06.2018, 17:29
A session fixation vulnerability exists in Jenkins SAML Plugin 1.0.6 and earlier in SamlSecurityRealm.java that allows unauthorized attackers to impersonate another users if they can control the pre-authentication session.Enginsight
Vendor | Product | Version |
---|---|---|
jenkins | saml | 𝑥 ≤ 1.0.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration