CVE

Id
59669  
CVE No.
CVE-2012-6426  
Status
Candidate  
Description
LemonLDAP::NG before 1.2.3 does not use the signature-verification capability of the Lasso library, which allows remote attackers to bypass intended access-control restrictions via crafted SAML data.  
Phase
Assigned (20121218)  
Votes
None (candidate not yet proposed)  
Comments