CVE-2020-1727
published 2020-06-22CVE-2020-1727: A vulnerability was found in Keycloak before 9.0.2, where every Authorization URL that points to an IDP server lacks proper input validation as it allows a…
PriorityP430medium5.4CVSS 3.1
AVNACLPRLUINSUCLILAN
EPSS
0.80%
52.6th percentile
A vulnerability was found in Keycloak before 9.0.2, where every Authorization URL that points to an IDP server lacks proper input validation as it allows a wide range of characters. This flaw allows a malicious to craft deep links that introduce further attack scenarios on affected clients.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | keycloak | < 9.0.2 | 9.0.2 |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
nvdv2.05.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:N
vendor_redhat6.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-pw23-237p-qf6r: A vulnerability was found in Keycloak before 9
ghsa_unreviewed·2022-05-24
CVE-2020-1727 [MEDIUM] GHSA-pw23-237p-qf6r: A vulnerability was found in Keycloak before 9
A vulnerability was found in Keycloak before 9.0.2, where every Authorization URL that points to an IDP server lacks proper input validation as it allows a wide range of characters. This flaw allows a malicious to craft deep links that introduce further attack scenarios on affected clients.
Red Hat
keycloak: missing input validation in IDP authorization URLs
vendor_redhat·2020-05-20·CVSS 6.4
CVE-2020-1727 [MEDIUM] CWE-20 keycloak: missing input validation in IDP authorization URLs
keycloak: missing input validation in IDP authorization URLs
A vulnerability was found in Keycloak before 9.0.2, where every Authorization URL that points to an IDP server lacks proper input validation as it allows a wide range of characters. This flaw allows a malicious to craft deep links that introduce further attack scenarios on affected clients.
A flaw was found in Keycloak, where every Authorization URL that points to an IDP server lacks proper input validation as it allows a wide range of characters. This flaw allows a malicious to craft deep links that introduce further attack scenarios on affected clients.
Package: keycloak (Red Hat Fuse 7) - Affected
Package: keycloak (Red Hat OpenShift Application Runtimes) - Affected
Package: rh-sso7-keycloak (Red Hat Single Sign-On 7) - A
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-27751 ImageMagick: integer overflow in MagickCore/quantum-export.c
bugzilla·2020-10-27·CVSS 3.3
CVE-2020-27751 [LOW] CVE-2020-27751 ImageMagick: integer overflow in MagickCore/quantum-export.c
CVE-2020-27751 ImageMagick: integer overflow in MagickCore/quantum-export.c
In ImageMagick 7.0.8-68 there are shift exponent 65 is too large for 64-bit type at MagickCore/quantum-export.c and outside the range of representable values of type 'unsigned long long' at MagickCore/quantum-private.h.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1727
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/f60d59cc3a7e3402d403361e0985ffa56f746a82
Discussion:
Acknowledgments:
Name: Suhwan Song (Seoul National University)
---
Statement:
This flaw is out of support scope for Red Hat Enterprise Linux 5, 6, and 7. Inkscape is not affected because it no longer uses a bundled ImageMagick in Red Hat Enterprise Linux 8. For more information regarding support scopes, pleas
Bugzilla
CVE-2020-2152 jenkins-subversion-plugin: error message for Repository URL field form validation leads to reflected XSS
bugzilla·2020-03-31·CVSS 6.1
CVE-2020-2152 [MEDIUM] CVE-2020-2152 jenkins-subversion-plugin: error message for Repository URL field form validation leads to reflected XSS
CVE-2020-2152 jenkins-subversion-plugin: error message for Repository URL field form validation leads to reflected XSS
A vulnerability was found in Jenkins Subversion Release Manager Plugin 1.2 and earlier does not escape the error message for the Repository URL field form validation, resulting in a reflected cross-site scripting vulnerability.
Discussion:
External References:
https://jenkins.io/security/advisory/2020-03-09/#SECURITY-1727
---
Statement:
The `jenkins-2-plugins` package includes `subversion` plugin, not `svn-release-mgr-plugin` and is therefore not affected by this vulnerability.
Bugzilla
CVE-2020-1727 keycloak: missing input validation in IDP authorization URLs
bugzilla·2020-02-07·CVSS 6.4
CVE-2020-1727 [MEDIUM] CVE-2020-1727 keycloak: missing input validation in IDP authorization URLs
CVE-2020-1727 keycloak: missing input validation in IDP authorization URLs
During the assessment of the Admin Console application, it was found that almost every Authorization URL that points to an IDP server lacks on proper input validation. There is no need to allow a wide range of characters that a malicious user might be able to use to craft deep links that can introduce further attack scenarios on affected clients.
Reference:
https://issues.redhat.com/browse/KEYCLOAK-12192
Discussion:
Acknowledgments:
Name: Sebastian Moritz (Cure53)
---
This issue has been addressed in the following products:
Red Hat Runtimes Spring Boot 2.2.6
Via RHSA-2020:2252 https://access.redhat.com/errata/RHSA-2020:2252
---
This bug is now closed. Further updates for individual products will be reflec
2020-06-22
Published