İçeriğe atla
Noroxi

Internet2 kayıtları

internet2 üreticisine ait 8 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%75
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

8 kayıt
  • CVE-2009-3476
    38İzleyin

    Buffer overflow in OpenSAML before 1.1.3 as used in Internet2 Shibboleth Service Provider software 1.3.x before 1.3.4, and XMLTooling before

    KritikCVSS 9,3İstismar yokEPSS %4

    internet2 · shibboleth-sp29 Eyl 2009

  • CVE-2024-39848
    36İzleyin

    Internet2 Grouper before 5.6 allows authentication bypass when LDAP authentication is used in certain ways.

    KritikCVSS 9,1İstismar yokEPSS %0

    29 Haz 2024

  • CVE-2009-3474
    30İzleyin

    OpenSAML 2.x before 2.2.1 and XMLTooling 1.x before 1.2.1, as used by Internet2 Shibboleth Service Provider 2.x before 2.2.1, do not follow

    YüksekCVSS 7,5İstismar yokEPSS %2

    internet2 · opensaml29 Eyl 2009

  • CVE-2009-3475
    30İzleyin

    Internet2 Shibboleth Service Provider software 1.3.x before 1.3.3 and 2.x before 2.2.1, when using PKIX trust validation, does not properly

    YüksekCVSS 7,5İstismar yokEPSS %1

    internet2 · shibboleth-sp29 Eyl 2009

  • CVE-2018-19794
    24İzleyin

    Cross-site scripting (XSS) vulnerability in UiV2Public.index in Internet2 Grouper 2.2 and 2.3 allows remote attackers to inject arbitrary we

    OrtaCVSS 6,1İstismar yokEPSS %1

    internet2 · grouper3 Ara 2018

  • CVE-2013-6440
    21İzleyin

    The (1) BasicParserPool, (2) StaticBasicParserPool, (3) XML Decrypter, and (4) SAML Decrypter in Shibboleth OpenSAML-Java before 2.6.1 set t

    OrtaCVSS 5,0İstismar yokEPSS %3

    shibboleth · opensaml14 Şub 2014

  • CVE-2025-59714
    19İzleyin

    In Internet2 Grouper 5.17.1 before 5.20.5, group admins who are not Grouper sysadmins can configure loader jobs.

    OrtaCVSS 4,9İstismar yokEPSS %0

    internet2 · grouper18 Eyl 2025

  • CVE-2009-3300
    11İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in the Identity Provider (IdP) 1.3.x before 1.3.4 and 2.x before 2.1.5, and the Service

    DüşükCVSS 2,6İstismar yokEPSS %2

    internet2 · identity provider6 Kas 2009