CVE-2012-5351: Apache AXIS2
Medium severity, CVSS 6.4. EPSS: 5.1% chance of exploitation in the next 30 days.
Apache Axis2 allows remote attackers to forge messages and bypass authentication via a SAML assertion that lacks a Signature element, aka a "Signature exclusion attack," a different vulnerability than CVE-2012-4418.
Affected products
- Apache AXIS2: affected versions not specified
Published 2012-10-09. Last modified 2026-06-16.