VYPR

Samlr

by Zendesk

CVEs (1)

  • CVE-2018-20857HigJul 26, 2019
    risk 0.00cvss 7.5epss 0.01

    Zendesk Samlr before 2.6.2 allows an XML nodes comment attack such as a name_id node with [email protected] followed by <!---->. and then the attacker's domain name.