Vulnerability Database

299,749

Total vulnerabilities in the database

CVE-2017-1000071

Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass in the validateCAS20 function when configured to authenticate against an old CAS server.

  • Published: Jul 17, 2017
  • Updated: Nov 9, 2025
  • CVE: CVE-2017-1000071
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P