CVE-2012-5351
EPSS 0.31%Improper Authentication in Apache Axis2
發布日:2022/5/13修改日:2024/12/5
描述
Apache Axis2 allows remote attackers to forge messages and bypass authentication via a SAML assertion that lacks a Signature element, aka a "Signature exclusion attack," a different vulnerability than CVE-2012-4418.
受影響套件(1)
- Maven/org.apache.axis2:axis2from 0, < 1.6.4