Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-45116 | Authentication bypass when an OAuth2 Client is using client_secret_jwt as its authentication method on affected 11.3 versions via specially crafted requests. |
No history.
Status: PUBLISHED
Assigner: Ping Identity
Published:
Updated: 2024-08-22T16:53:12.079Z
Reserved: 2023-08-25T16:59:38.674Z
Link: CVE-2023-40545
Updated: 2024-08-02T18:38:50.649Z
Status : Modified
Published: 2024-02-06T18:15:58.470
Modified: 2026-06-17T06:18:23.820
Link: CVE-2023-40545
No data.
OpenCVE Enrichment
No data.
-
CWE-306
Missing Authentication for Critical Function
EUVD