vulnerability

Huawei EulerOS: CVE-2016-8638: ipsilon security update

Severity
6
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:P)
Published
Jul 12, 2017
Added
Jan 19, 2018
Modified
Aug 13, 2025

Description

A vulnerability was found in ipsilon in the SAML2 provider's handling of sessions. An attacker able to hit the logout URL could determine what service providers other users are logged in to and terminate their sessions.

Solutions

huawei-euleros-2_0_sp2-upgrade-ipsilonhuawei-euleros-2_0_sp2-upgrade-ipsilon-authformhuawei-euleros-2_0_sp2-upgrade-ipsilon-authgssapihuawei-euleros-2_0_sp2-upgrade-ipsilon-authldaphuawei-euleros-2_0_sp2-upgrade-ipsilon-basehuawei-euleros-2_0_sp2-upgrade-ipsilon-clienthuawei-euleros-2_0_sp2-upgrade-ipsilon-filesystemhuawei-euleros-2_0_sp2-upgrade-ipsilon-infosssdhuawei-euleros-2_0_sp2-upgrade-ipsilon-personahuawei-euleros-2_0_sp2-upgrade-ipsilon-saml2huawei-euleros-2_0_sp2-upgrade-ipsilon-saml2-basehuawei-euleros-2_0_sp2-upgrade-ipsilon-tools-ipa
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.