CyberzSOC

Publication detail
← Back to advisories & guidance

2024-047: Critical Vulnerability in GitHub Enterprise Server ↗ source

May 22, 2024 CERT-EU Advisory

Summary

This vulnerability allows attackers to forge SAML responses, granting unauthorised administrative access A proof of concept is publicly available. CERT-EU strongly recommends updating as soon as The vulnerability CVE-2024-4985 , with a CVSS score of 10, involves SAML SSO with the optional encrypted assertions feature. An attacker could forge a SAML claim that contains correct user information. When GHES processes a fake SAML claim, it will not be able to validate its signature correctly, allowing an attacker to gain access to the GHES instance. The following GitHub Enterprise Server versions are affected: Only instances using SAML single sign-on (SSO) authentication are affected.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

CVECVSSAffected
CVE-2024-4985 10.0 Critical GitHub Enterprise Server An authentication bypass vulnerability was present in the GitHub Enterprise Server (GHES) when utilizing SAML single sign-on authentication with the …

Extracted from the publication text. Each CVE links to its tracked detail page.

Vendors Named in This Publication

No KEV-catalogued vendors are named in this publication.