Impact
This vulnerability is an authentication bypass that allows an attacker to use SAML assertions intended for other services to gain access to the NeuVector platform. NeuVector accepts any SAML assertion without verifying that the audience matches the service, because the audit warning for a mismatched audience is ignored. As a result, a user who has legitimate access to any SAML‑enabled application within the same corporate identity provider can log into NeuVector without further authorization, effectively impersonating themselves on the target platform.
Affected Systems
The affected product is NeuVector. Specific version information is not disclosed in the CVE data, so all released builds of NeuVector are likely to be vulnerable until an official update is applied.
Risk and Exploitability
The CVSS score of 7.6 indicates a high severity, but the EPSS score of less than 1% suggests that exploit attempts are currently unlikely. The vulnerability is not listed in the CISA KEV catalog, reducing presumed urgency. The exploit vector is remote, relying on the delivery of a SAML assertion from any application the attacker can log into. An attacker who can obtain or forge such an assertion could bypass authentication and obtain unauthorized access to NeuVector resources.
OpenCVE Enrichment