Keycloak
cpe:2.3:a:redhat:keycloak:*:*:*:*:*:*:*
- < 1.0.0
An information disclosure vulnerability exists in Keycloak. A remote, unauthenticated attacker can exploit this flaw by sending specially crafted SOAP requests to the SAML ECP (Enhanced Client or Proxy) endpoint, using different client IDs. By analyzing the distinct faultstrings in the responses, the attacker can infer the client's protocol type, leading to unauthorized information disclosure.
Exploitation of this vulnerability allows for unauthorized enumeration of client protocol types, which could facilitate further targeted attacks.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.