Description
A SAML authentication replay vulnerability in Rancher-s Assertion Consumer Service (ACS) handler did not enforce one-time use of SAML assertion, potentially allowing person in the middle attacks against Rancher, affecting Rancher 2.14.0 before 2.14.3,
CVSS 7.4EPSS 0.291%Risque 0.76
Voir la source- Publication
- 2026-06-30 13:18:42
- Versions concernées
- <2.14.3
- Type
- Logiciel critique
- Vecteur
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N