vulnerability
Red Hat: CVE-2021-28091: CVE-2021-28091 lasso: XML signature wrapping vulnerability when parsing SAML responses (Multiple Advisories)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:N/AC:L/Au:N/C:N/I:P/A:N) | Jun 4, 2021 | Aug 3, 2021 | Nov 26, 2024 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
Jun 4, 2021
Added
Aug 3, 2021
Modified
Nov 26, 2024
Description
Lasso all versions prior to 2.7.0 has improper verification of a cryptographic signature.
Solution(s)
redhat-upgrade-java-lasso-debuginforedhat-upgrade-lassoredhat-upgrade-lasso-debuginforedhat-upgrade-lasso-debugsourceredhat-upgrade-lasso-develredhat-upgrade-lasso-pythonredhat-upgrade-perl-lasso-debuginforedhat-upgrade-python3-lasso-debuginfo

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.