CVE-2015-6671

Published
View on NVD ↗
CVSS v3
5.9
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT

Description

Open edX edx-platform before 2015-08-25 requires use of the database for storage of SAML SSO secrets, which makes it easier for context-dependent attackers to obtain sensitive information by leveraging access to a database backup.

The Open edX LMS & Studio, powering education sites around the world!
GitHubGitHub
8.11K