Description
XML Signature Wrapping (XSW) in SAML-based Single Sign-on feature in TOPdesk v12.10.12 allows bad actors with credentials to authenticate with the Identity Provider (IP) to impersonate any TOPdesk user via SAML Response manipulation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-38963 | XML Signature Wrapping (XSW) in SAML-based Single Sign-on feature in TOPdesk v12.10.12 allows bad actors with credentials to authenticate with the Identity Provider (IP) to impersonate any TOPdesk user via SAML Response manipulation. |
References
History
Wed, 04 Dec 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-12-04T21:41:52.409Z
Reserved: 2023-06-07T00:00:00.000Z
Link: CVE-2023-34923
Updated: 2024-08-02T16:17:04.242Z
Status : Modified
Published: 2023-06-22T19:15:08.987
Modified: 2024-11-21T08:07:40.493
Link: CVE-2023-34923
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD