Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
6.3
CVE-2020-3483
- EPSS 0.03%
- Veröffentlicht 14.10.2020 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:31:09
Duo has identified and fixed an issue with the Duo Network Gateway (DNG) product in which some customer-provided SSL certificates and private keys were not excluded from logging. This issue resulted in certificate and private key information being wr...
7.5
CVE-2018-7340
- EPSS 0.13%
- Veröffentlicht 17.04.2019 15:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:03
Duo Network Gateway 1.2.9 and earlier may incorrectly utilize the results of XML DOM traversal and canonicalization APIs in such a way that an attacker may be able to manipulate the SAML data without invalidating the cryptographic signature, allowing...
1