Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 8 min 106 bronnen 1 kritiek 4 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2017-1000071

HIGH · 8.1 CVSS Gepubliceerd: CWE-287

Beschrijving

Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass in the validateCAS20 function when configured to authenticate against an old CAS server.

Vendors

Apereo

Affected products

Phpcas

References