PT-2019-4124 · Lemonldap · Lemonldap::Ng
Maxbes
+1
·
Publicado
2019-09-25
·
Atualizado
2020-08-18
·
CVE-2019-15941
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
LemonLDAP::NG versions 2.x through 2.0.5
Description
The issue is related to improper authorization in the OpenID Connect Issuer of LemonLDAP::NG. It allows an attacker to bypass access control rules via a crafted OpenID Connect authorization request. This can happen if there exists an OIDC Relaying party within the LemonLDAP configuration with weaker access control rules than the target RP, and no filtering on redirection URIs. Exploitation of this issue may allow a remote attacker to gain unauthorized access to information, compromising its integrity and availability, by using a specially crafted OpenID Connect authorization request.
Recommendations
For LemonLDAP::NG versions 2.x through 2.0.5, consider disabling the OpenID Connect Issuer feature until a patch is available, or ensure that all OIDC Relaying parties have strong access control rules and implement filtering on redirection URIs to minimize the risk of exploitation.
Correção
Incorrect Authorization
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Lemonldap::Ng