Description
The NT auth module in OpenAM before 14.6.6 allows a "replace Samba username attack."
Remediation
References
https://github.com/OpenIdentityPlatform/OpenAM/compare/14.6.5...14.6.6
https://github.com/OpenIdentityPlatform/OpenAM/pull/514
https://github.com/OpenIdentityPlatform/OpenAM/releases/tag/14.6.6
Related Vulnerabilities
CVE-2020-7716 Vulnerability in npm package deeps
CVE-2022-31108 Vulnerability in maven package org.webjars.bower:mermaid
CVE-2016-6797 Vulnerability in maven package org.apache.tomcat:tomcat-catalina
CVE-2023-26136 Vulnerability in maven package org.webjars.bowergithub.salesforce:tough-cookie
CVE-2022-36437 Vulnerability in maven package com.hazelcast:hazelcast-enterprise