cisco-sa-lasso-saml-jun2021-DOXNRLkD
Lasso SAML Implementation Vulnerability Affecting Cisco Products: June 2021
High · Updated · Cisco
1 product with CSAF evidence
On June 1, 2021, Lasso disclosed a security vulnerability in the Lasso Security Assertion Markup Language (SAML) Single Sign-On (SSO) library. This vulnerability could allow an authenticated attacker to impersonate another authorized user when interacting with an application. For a description of this vulnerability, see lasso.git NEWS.
| Product | CVE |
|---|---|
| Cisco Email Security Appliance (ESA) | CVE-2021-28091 |