Openidc

Mod Auth Openidc

16 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.27%
  • Published 06.04.2025 20:02:20
  • Last modified 17.04.2025 11:15:48

mod_auth_openidc is an OpenID Certified authentication and authorization module for the Apache 2.x HTTP server that implements the OpenID Connect Relying Party functionality. Prior to 2.4.16.11, a bug in a mod_auth_openidc results in disclosure of pr...

Exploit
  • EPSS 0.21%
  • Published 13.02.2024 19:15:11
  • Last modified 21.11.2024 08:59:46

mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server that implements the OpenID Connect Relying Party functionality. In affected versions missing input validation on mod_auth_openidc_session_...

  • EPSS 0.1%
  • Published 03.04.2023 14:15:07
  • Last modified 10.04.2025 20:46:37

mod_auth_openidc is an authentication and authorization module for the Apache 2.x HTTP server that implements the OpenID Connect Relying Party functionality. In versions 2.0.0 through 2.4.13.1, when `OIDCStripCookies` is set and a crafted cookie supp...

  • EPSS 0.36%
  • Published 14.12.2022 18:15:20
  • Last modified 21.11.2024 06:48:45

mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server. Versions prior to 2.4.12.2 are vulnerable to Open Redirect. When providing a logout parameter to the redirect URI, the existing code in o...

Exploit
  • EPSS 0.42%
  • Published 03.09.2021 14:15:07
  • Last modified 21.11.2024 06:18:50

mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In versions prior to 2.4.9.4, the 3rd-party init SSO...

  • EPSS 0.38%
  • Published 26.07.2021 17:15:08
  • Last modified 21.11.2024 06:07:44

mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In mod_auth_openidc before version 2.4.9, the AES GC...

  • EPSS 0.27%
  • Published 26.07.2021 17:15:08
  • Last modified 21.11.2024 06:07:45

mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In mod_auth_openidc before version 2.4.9, there is a...

  • EPSS 0.42%
  • Published 22.07.2021 22:15:08
  • Last modified 21.11.2024 06:07:44

mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. When mod_auth_openidc versions prior to 2.4.9 are co...

Exploit
  • EPSS 0.12%
  • Published 22.07.2021 22:15:08
  • Last modified 21.11.2024 06:07:44

mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Connect Relying Party, authenticating users against an OpenID Connect Provider. In versions prior to 2.4.9, `oidc_validate_redirect_...

  • EPSS 3.06%
  • Published 20.05.2021 02:15:07
  • Last modified 21.11.2024 05:47:04

mod_auth_openidc 2.4.0 to 2.4.7 allows a remote attacker to cause a denial-of-service (DoS) condition via unspecified vectors.