CVE

Id
83948  
CVE No.
CVE-2015-6671  
Status
Candidate  
Description
Open edX edx-platform before 2015-08-25 requires use of the database for storage of SAML SSO secrets, which makes it easier for context-dependent attackers to obtain sensitive information by leveraging access to a database backup.  
Phase
Assigned (20150825)  
Votes
None (candidate not yet proposed)  
Comments