CVE-2023-34923 Information
Jun 23, 2023
cve
Description
XML Signature Wrapping (XSW) in SAML-based Single Sign-on feature in TOPdesk v12.10.12 allows bad actors with credentials to authenticate with the Identity Provider (IP) to impersonate any TOPdesk user via SAML Response manipulation.
Reference
https://char49.com/articles/topdesk-vulnerable-to-xml-signature-wrapping-attacks https://my.topdesk.com/tas/public/ssp/content/detail/knowledgeitem?unid=56a16ba1c2824e9a82655892ba75d3c0
Share on: