An improper authentication vulnerability exists in WSO2 Identity Server 7.0.0 due to an implementation flaw that allows app-native authentication to be bypassed when an invalid object is passed.
Exploitation of this vulnerability could enable malicious actors to circumvent the client verification mechanism, compromising the integrity of the authentication process.
References
Configurations
No configuration.
History
23 May 2025, 15:54
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
22 May 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-22 19:15
Updated : 2025-05-23 15:54
NVD link : CVE-2024-7487
Mitre link : CVE-2024-7487
CVE.ORG link : CVE-2024-7487
JSON object : View
Products Affected
No product.
CWE
CWE-287
Improper Authentication