The non-Domino web agents in CA Single Sign-On (aka SSO, formerly SiteMinder) R6, R12.0 before SP3 CR13, R12.0J before SP3 CR1.2, and R12.5 before CR5 allow remote attackers to cause a denial of service (daemon crash) or obtain sensitive information via a crafted request.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2016-03-23 18:59
Updated : 2021-04-09 11:55
NVD link : CVE-2015-6854
Mitre link : CVE-2015-6854
JSON object : View
CWE
CWE-345
Insufficient Verification of Data Authenticity
Products Affected
broadcom
- single_sign-on