Description
The NT auth module in OpenAM before 14.6.6 allows a "replace Samba username attack."
Remediation
References
https://github.com/OpenIdentityPlatform/OpenAM/compare/14.6.5...14.6.6
https://github.com/OpenIdentityPlatform/OpenAM/pull/514
https://github.com/OpenIdentityPlatform/OpenAM/releases/tag/14.6.6
Related Vulnerabilities
CVE-2022-31103 Vulnerability in npm package lettersanitizer
CVE-2018-1000644 Vulnerability in maven package org.eclipse.rdf4j:rdf4j-rio-trix
CVE-2021-23391 Vulnerability in npm package calipso
CVE-2021-20220 Vulnerability in maven package io.undertow:undertow-core
CVE-2022-41251 Vulnerability in maven package org.jenkins-ci.plugins:apprenda