PySAML2 allows remote attackers to conduct XML external entity (XXE) attacks via a crafted SAML XML request or response
PySAML2 allows remote attackers to conduct XML external entity (XXE) attacks via a crafted SAML XML request or response.
Exploitability
AV:N
AC:L
PR:L
UI:R
Scope
S:C
Impact
C:H
I:H
A:H
9/CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H