Description
The NT auth module in OpenAM before 14.6.6 allows a "replace Samba username attack."
Remediation
References
https://github.com/OpenIdentityPlatform/OpenAM/releases/tag/14.6.6
https://github.com/OpenIdentityPlatform/OpenAM/pull/514
https://github.com/OpenIdentityPlatform/OpenAM/compare/14.6.5...14.6.6
Related Vulnerabilities
CVE-2023-29214 Vulnerability in maven package org.xwiki.platform:xwiki-platform-panels-ui
CVE-2022-23082 Vulnerability in maven package io.whitesource:curekit
CVE-2022-29577 Vulnerability in maven package org.owasp:antisamy
CVE-2023-24057 Vulnerability in maven package ca.uhn.hapi.fhir:org.hl7.fhir.r5
CVE-2020-5421 Vulnerability in maven package org.springframework:spring-web