OneLogin SAML SSO <= 2.8.0 - Distributed Denial-of-Service
2019-01-28 00:00
AnonymousStrategic Overview
Vulnerability Overview
The OneLogin SAML SSO for WordPress is vulnerable to DDoS in versions up to, and including, 2.8.0. This is due to an XML Entity Expansion. This makes it possible for unauthenticated attackers to use XML External Entity to cause the vulnerable service to slow down and/or become unresponsive.
Technical Analysis
REMEDIATION: Update to version 3.0.0, or a newer patched version --- IDENTIFIER: CWE-776 (Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')) The product uses XML documents and allows their structure to be defined with a Document Type Definition (DTD), but it does not properly control the number of recursive definitions of entities.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C