XML Signature Wrapping (XSW) in SAML-based Single Sign-on feature in TOPdesk v12.10.12 allows bad actors with credentials to authenticate with the Identity Provider (IP) to impersonate any TOPdesk user via SAML Response manipulation.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
topdesk topdesk 12.10.12 |