In Blue Planet® products through 22.12, a misconfiguration in the SAML implementation allows for privilege escalation. Only products using SAML authentication are affected.

Blue Planet® has released software updates that address this vulnerability for the affected products. Customers are advised to upgrade their Blue Planet products to the latest software version as soon as possible. The software updates can be downloaded from the Ciena Support Portal.

Fixes

Solution

Software patch to be applied


Workaround

No workaround given by the vendor.

References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Ciena

Published:

Updated: 2024-08-29T17:10:16.253Z

Reserved: 2024-02-29T11:16:19.384Z

Link: CVE-2024-2005

cve-icon Vulnrichment

Updated: 2024-08-01T18:56:22.708Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-06T12:15:45.827

Modified: 2024-11-21T09:08:47.640

Link: CVE-2024-2005

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.