CVE Vulnerabilities

CVE-2020-36255

Published: Mar 05, 2021 | Modified: Mar 11, 2021
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in IdentityModel (aka ScottBrady.IdentityModel) before 1.3.0. The Branca implementation allows an attacker to modify and forge authentication tokens.

Affected Software

Name Vendor Start Version End Version
Identitymodel Identitymodel_project * 1.3.0 (excluding)

References