CVE-2021-37154

In ForgeRock Access Management (AM) before 7.0.2, the SAML2 implementation allows XML injection, potentially enabling a fraudulent SAML 2.0 assertion.
Configurations

Configuration 1

cpe:2.3:a:forgerock:access_management:*:*:*:*:*:*:*:*

Information

Published : 2021-08-25 09:15

Updated : 2021-09-01 03:35


NVD link : CVE-2021-37154

Mitre link : CVE-2021-37154

Products Affected
No products.
CWE