Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-6582
Description:The Doorkeeper gem before 4.2.0 for Ruby might allow remote attackers to conduct replay attacks or revoke arbitrary tokens by leveraging failure to implement the OAuth 2.0 Token Revocation specification.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-6582
BugTraq ID: 92551
http://www.securityfocus.com/bid/92551
Bugtraq: 20160818 [CVE-2016-6582] Doorkeeper gem does not revoke tokens & uses wrong auth/auth method (Google Search)
http://www.securityfocus.com/archive/1/539268/100/0/threaded
http://seclists.org/fulldisclosure/2016/Aug/105
http://packetstormsecurity.com/files/138430/Doorkeeper-4.1.0-Token-Revocation.html




© 1998-2025 E-Soft Inc. All rights reserved.