This is an old revision of the document!


Security Advisory 2019-01

Summary

Possible user impersonation in Stages when SAML authentication is enabled

Release Date

2019-10-11

Severity

Medium (according to NVD definition; CVSS score: 4.6)

Affected Versions

  • 7.3.0.0 to 7.3.5.0
  • 7.2.0.0 to 7.2.1.3
  • 6.7.4.2 to 6.7.8.0

<font 11pt/Calibri,sans-serif;;inherit;;inherit>Previous minor and major versions, e.g. 7.1.x.y, 7.0.x.y, 6.6.x.y, 6.5.x.y, or 5.x.y.z are not affected.</font>

<font 11pt/Calibri,sans-serif;;inherit;;inherit>Only installations that have enabled SAML authentication are vulnerable.</font>

<font 11pt/Calibri,sans-serif;;inherit;;inherit>To find out which Stages version you are running, log in as “root” and click on the “Info” icon (6.x) or “Administration” menu (7.x).</font>

Description

Fix