CVEs (1)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Eduserv 1Openathens Service Provider Apr 29, 2026 Oct 9, 2012 N/A· v4 N/A· v3 5.8 MEDIUM· v2 Eduserv OpenAthens SP 2.0 for Java allows remote attackers to forge messages and bypass authentication via a SAML assertion that lacks a Signature element, aka a "Signature exclusion attack." |