CVE-2013-2279: Siteminder Agent For SharePoint 2010
High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.
CA SiteMinder Federation (FSS) 12.5, 12.0, and r6; Federation (Standalone) 12.1 and 12.0; Agent for SharePoint 2010; and SiteMinder for Secure Proxy Server 6.0, 12.0, and 12.5 does not properly verify XML signatures for SAML statements, which allows remote attackers to spoof other users and gain privileges.
Affected products
- Siteminder Agent For SharePoint 2010: any version
- Siteminder Federation 12.0: any version; affected versions not specified
- Siteminder Federation 12.1: affected versions not specified
- Siteminder Federation 12.5: any version
- Siteminder Federation r6.0: any version
- Siteminder For Secure Proxy Server 12.0: any version
- Siteminder For Secure Proxy Server 12.5: any version
- Siteminder For Secure Proxy Server 6.0: any version
Published 2013-03-21. Last modified 2026-06-16.