First published: Mon Mar 07 2016(Updated: )
Information leakage issue in the sanitycheck module
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
composer/simplesamlphp/simplesamlphp | <1.14.1 | |
composer/simplesamlphp/simplesamlphp | <1.14.1 | 1.14.1 |
SimpleSAMLphp | <=1.14.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-3124 is considered a low severity vulnerability as it only allows information leakage without direct exploitation.
To fix CVE-2016-3124, upgrade SimpleSAMLphp to version 1.14.1 or later.
CVE-2016-3124 allows attackers to determine the PHP version running on the server.
If you are using a version of SimpleSAMLphp prior to 1.14.1, you are affected by CVE-2016-3124.
The vulnerability in CVE-2016-3124 is associated with the sanitycheck module of SimpleSAMLphp.