1Password SCIM Bridge before 1.6.2 mishandles validation of authenticated requests for log files, leading to disclosure of a TLS private key.
References
Link Resource
https://app-updates.agilebits.com/product_history/SCIM Release Notes Third Party Advisory
https://support.1password.com/kb/202102/ Mitigation Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-02-08T19:06:00

Updated: 2021-02-09T22:26:57

Reserved: 2021-02-08T00:00:00


Link: CVE-2021-26905

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-02-08T20:15:12.963

Modified: 2022-07-12T17:42:04.277


Link: CVE-2021-26905

JSON object: View

cve-icon Redhat Information

No data.

CWE