Medium severity5.9NVD Advisory· Published Mar 13, 2017· Updated May 13, 2026
CVE-2015-6671
CVE-2015-6671
Description
Open edX edx-platform before 2015-08-25 requires use of the database for storage of SAML SSO secrets, which makes it easier for context-dependent attackers to obtain sensitive information by leveraging access to a database backup.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/edx/edx-platform/pull/9471nvdIssue TrackingPatchThird Party Advisory
- open.edx.org/CVE-2015-6671nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.