Widespread Vulnerability Found in Single-Sign-On Products

A behavioral quirk in SAML libraries has left many single-sign-on (SSO) implementations vulnerable to abuse. It allows an attacker that has gained any authenticated access to trick the system into granting further access as a different user without knowledge of that user’s password.

read more

Read more: Widespread Vulnerability Found in Single-Sign-On Products

Story added 27. February 2018, content source with full text you can find at link above.