PT-2021-19613 · Hitachi · Hitachi Id Bravura Security Fabric

Michael Ellis

·

Published

2021-06-09

·

Updated

2021-06-24

·

CVE-2021-3196

CVSS v3.1

8.8

High

VectorAC:L/AV:N/A:H/C:H/I:H/PR:L/S:U/UI:N
Name of the Vulnerable Software and Affected Versions: Hitachi ID Bravura Security Fabric versions 11.0.0 through 11.1.3 Hitachi ID Bravura Security Fabric versions 12.0.0 through 12.0.2 Hitachi ID Bravura Security Fabric version 12.1.0
Description: An issue was discovered in Hitachi ID Bravura Security Fabric when using federated identity management, authenticating via SAML through a third-party identity provider. An attacker can inject additional data into a signed SAML response being transmitted to the service provider. The application successfully validates the signed values but uses the unsigned malicious values. An attacker with lower-privilege access to the application can inject the username of a high-privilege user to impersonate that user.
Recommendations: For versions 11.0.0 through 11.1.3, consider disabling federated identity management via SAML until a patch is available. For versions 12.0.0 through 12.0.2, restrict access to the SAML authentication mechanism to minimize the risk of exploitation. For version 12.1.0, avoid using the SAML response for authentication until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Verification of Cryptographic Signature

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-3196

Affected Products

Hitachi Id Bravura Security Fabric