mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-15 03:30:24 +02:00
661 B
661 B
CVE-2021-28963
Description
Shibboleth Service Provider before 3.2.1 allows content injection because template generation uses attacker-controlled parameters.
POC
Reference
- https://issues.shibboleth.net/jira/browse/SSPCPP-922
- https://issues.shibboleth.net/jira/browse/SSPCPP-922
Github
No PoCs found on GitHub currently.