[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*


oval:org.secpod.oval:def:21032
Marvin S. Addison discovered that Jasig phpCAS, a PHP library for the CAS authentication protocol, did not encode tickets before adding them to an URL, creating a possibility for cross site scripting.

oval:org.secpod.oval:def:107397
Jasig CAS Client for Java is the integration point for applications that want to speak with a CAS server, either via the CAS 1.0 or CAS 2.0 protocol.

CPE    2
cpe:/o:fedoraproject:fedora:20
cpe:/o:debian:debian_linux:7.0
CWE    1
CWE-74
*CVE
CVE-2014-4172

© SecPod Technologies