Description
The NT auth module in OpenAM before 14.6.6 allows a "replace Samba username attack."
Remediation
References
https://github.com/OpenIdentityPlatform/OpenAM/compare/14.6.5...14.6.6
https://github.com/OpenIdentityPlatform/OpenAM/pull/514
https://github.com/OpenIdentityPlatform/OpenAM/releases/tag/14.6.6
Related Vulnerabilities
CVE-2023-41034 Vulnerability in maven package org.eclipse.leshan:leshan-core
CVE-2023-29202 Vulnerability in maven package org.xwiki.platform:xwiki-platform-rendering-macro-rss
CVE-2020-28503 Vulnerability in npm package copy-props
CVE-2023-3815 Vulnerability in maven package com.ruoyi:ruoyi
CVE-2020-17521 Vulnerability in maven package org.codehaus.groovy:groovy