cve/2024/CVE-2024-5249.md
2025-09-29 16:08:36 +00:00

18 lines
647 B
Markdown

### [CVE-2024-5249](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-5249)
![](https://img.shields.io/static/v1?label=Product&message=Akana%20API%20Platform&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=0.0.0%3C%202024.1.0%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-294%20Authentication%20Bypass%20by%20Capture-replay&color=brighgreen)
### Description
In versions of Akana API Platform prior to 2024.1.0, SAML tokens can be replayed.
### POC
#### Reference
- https://portal.perforce.com/s/detail/a91PA000001SUH7YAO
#### Github
No PoCs found on GitHub currently.