Description
Authentication bypass when an OAuth2 Client is using client_secret_jwt as its authentication method on affected 11.3 versions via specially crafted requests.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-45116 | Authentication bypass when an OAuth2 Client is using client_secret_jwt as its authentication method on affected 11.3 versions via specially crafted requests. |
References
History
No history.
Status: PUBLISHED
Assigner: Ping Identity
Published:
Updated: 2024-08-22T16:53:12.079Z
Reserved: 2023-08-25T16:59:38.674Z
Link: CVE-2023-40545
Updated: 2024-08-02T18:38:50.649Z
Status : Modified
Published: 2024-02-06T18:15:58.470
Modified: 2024-11-21T08:19:41.303
Link: CVE-2023-40545
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD