CVE-2008-3891

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
03/09/2008
Last modified:
09/04/2025

Description

The SAML Single Sign-On (SSO) Service for Google Apps allows remote service providers to impersonate users at arbitrary service providers via vectors related to authentication responses that lack a request identifier and recipient field.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:google:google_apps:*:*:*:*:*:*:*:*