CVE-2012-1104: Medium severity Apereo Phpcas vulnerability
A Security Bypass vulnerability exists in the phpCAS 1.2.2 library from the jasig project due to the way proxying of services are managed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1104?
The severity of CVE-2012-1104 is medium with a severity value of 5.3.
What is the affected software for CVE-2012-1104?
The affected software for CVE-2012-1104 includes Apereo Phpcas version 1.2.2.
How can I fix CVE-2012-1104?
To fix CVE-2012-1104, you should upgrade to a patched version of the phpCAS library.
Where can I find more information about CVE-2012-1104?
You can find more information about CVE-2012-1104 at the following references: [Openwall](http://www.openwall.com/lists/oss-security/2012/03/05/7), [Red Hat Bugzilla](https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-1104), [GitLab](https://gitlab.vsb.cz/kal0178/sixmon/blob/b18bcde090dc38fc968a0b1e38d1dab08b8c369e/web/lib/CAS/CAS-1.3.5/docs/ChangeLog).
What is the Common Weakness Enumeration (CWE) for CVE-2012-1104?
The Common Weakness Enumeration (CWE) for CVE-2012-1104 is CWE-269.