This content is viewable by Everyone

Vulnerability in GitHub Enterprise Server

GitHub released security updates to address a vulnerability in Mandiant reported a vulnerability in GitHub Enterprise Server (GHES) instances using SAML single sign-on (SSO) authentication.  A remote attacker could exploit this vulnerability to forge a SAML response and gain administrator privileges, providing unrestricted access to all of the instance's contents without requiring any authentication.

For a complete description of the vulnerabilities and affected systems go to CVE-2024-4985 Detail.

IT Security

Read more about IT Security service offerings.