521526

1 exploit Active since Jul 2019
CVE-2019-1006 NOMISEC HIGH SCANNER
.NET Framework - Authentication Bypass via SAML Token Arbitrary Symmetric Key Signing
An authentication bypass vulnerability exists in Windows Communication Foundation (WCF) and Windows Identity Foundation (WIF), allowing signing of SAML tokens with arbitrary symmetric keys, aka 'WCF/WIF SAML Token Authentication Bypass Vulnerability'.
1 stars
CVSS 7.5