CVE-2016-3085
Apache CloudStack 4.5.0 Authentication Bypass
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Apache CloudStack 4.5.x before 4.5.2.1, 4.6.x before 4.6.2.1, 4.7.x before 4.7.1.1, and 4.8.x before 4.8.0.1, when SAML-based authentication is enabled and used, allow remote attackers to bypass authentication and access the user interface via vectors related to the SAML plugin.
Apache CloudStack 4.5.x en versiones anteriores a 4.5.2.1, 4.6.x en versiones anteriores a 4.6.2.1, 4.7.x en versiones anteriores a 4.7.1.1 y 4.8.x en versiones anteriores a 4.8.0.1, cuando la autenticación SAML-based está activa y en uso, permiten a atacantes remotos eludir la autenticación y acceder a la interfaz de usuario a través de vectores relacionados con el plugin SAML.
Apache CloudStack contains an authentication module providing "single sign-on" functionality via the SAML data format. Under certain conditions, a user could manage to access the user interface without providing proper credentials. As the SAML plugin is disabled by default, this issue only affects installations that have enabled and use SAML-based authentication.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-03-10 CVE Reserved
- 2016-06-09 CVE Published
- 2024-08-05 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-254: 7PK - Security Features
- CWE-287: Improper Authentication
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/137390/Apache-CloudStack-4.5.0-Authentication-Bypass.html | X_refsource_misc |
|
http://www.securityfocus.com/archive/1/538636/100/0/threaded | Mailing List |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apache Search vendor "Apache" | Cloudstack Search vendor "Apache" for product "Cloudstack" | 4.7.0 Search vendor "Apache" for product "Cloudstack" and version "4.7.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Cloudstack Search vendor "Apache" for product "Cloudstack" | 4.5.1 Search vendor "Apache" for product "Cloudstack" and version "4.5.1" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Cloudstack Search vendor "Apache" for product "Cloudstack" | 4.5.2 Search vendor "Apache" for product "Cloudstack" and version "4.5.2" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Cloudstack Search vendor "Apache" for product "Cloudstack" | 4.6.0 Search vendor "Apache" for product "Cloudstack" and version "4.6.0" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Cloudstack Search vendor "Apache" for product "Cloudstack" | 4.6.1 Search vendor "Apache" for product "Cloudstack" and version "4.6.1" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Cloudstack Search vendor "Apache" for product "Cloudstack" | 4.6.2 Search vendor "Apache" for product "Cloudstack" and version "4.6.2" | - |
Affected
| ||||||
Apache Search vendor "Apache" | Cloudstack Search vendor "Apache" for product "Cloudstack" | 4.8 Search vendor "Apache" for product "Cloudstack" and version "4.8" | - |
Affected
|