CVE Published: 15/07/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: microsoft |
Vendor: Microsoft |
Product: Windows Status : PUBLISHED
CVE-2019-1006 Description
An authentication bypass vulnerability exists in Windows Communication Foundation (WCF) and Windows Identity Foundation (WIF), allowing signing of SAML tokens with arbitrary symmetric keys, aka \'WCF/WIF SAML Token Authentication Bypass Vulnerability\'.