The NT auth module in OpenAM before 14.6.6 allows a "replace Samba username attack."
Link | Tags |
---|---|
https://github.com/OpenIdentityPlatform/OpenAM/pull/514 | third party advisory patch |
https://github.com/OpenIdentityPlatform/OpenAM/compare/14.6.5...14.6.6 | release notes third party advisory patch |
https://github.com/OpenIdentityPlatform/OpenAM/releases/tag/14.6.6 | release notes third party advisory patch |