CVE-2020-27846
21.12.2020, 16:15
A signature verification vulnerability exists in crewjam/saml. This flaw allows an attacker to bypass SAML Authentication. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.Enginsight
Vendor | Product | Version |
---|---|---|
grafana | grafana | 𝑥 < 6.7.5 |
grafana | grafana | 7.0.0 ≤ 𝑥 < 7.2.3 |
grafana | grafana | 7.3.0 ≤ 𝑥 < 7.3.6 |
saml_project | saml | 𝑥 < 0.4.3 |
redhat | openshift_container_platform | 3.11 |
redhat | openshift_container_platform | 4.0 |
redhat | openshift_service_mesh | 2.0 |
redhat | enterprise_linux | 8.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References