CVE Vulnerabilities

CVE-2012-4494

Published: Oct 31, 2012 | Modified: Nov 02, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The Shibboleth authentication module 7.x-4.0 for Drupal does not properly check the active status of users, which allows remote blocked users to access bypass intended access restrictions and possibly have other impacts by logging in.

Affected Software

Name Vendor Start Version End Version
Shibb_auth Niif 7.x-4.0 (including) 7.x-4.0 (including)

References