Executive brief
SimpleSAMLphp allows timing side-channel attacks
Affected products
- Packagist simplesamlphp/simplesamlphp
Junglewise Threat Intelligence
CVE-2017-12872 · Severity: low · CVSS 3 · Published 2022-05-14
Technologies: simplesamlphp/simplesamlphp (Packagist). Vendors: Packagist.
SimpleSAMLphp allows timing side-channel attacks