CVE-2017-1000071

Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass in the validateCAS20 function when configured to authenticate against an old CAS server.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:apereo:phpcas:1.3.4:*:*:*:*:*:*:*

Information

Published : 2017-07-17 06:18

Updated : 2019-10-02 17:03


NVD link : CVE-2017-1000071

Mitre link : CVE-2017-1000071


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

apereo

  • phpcas