CVE-2024-6800 is a critical XML signature wrapping vulnerability in GitHub Enterprise Server (GHES) affecting all versions prior to 3.14 when using SAML authentication with specific identity providers. This flaw allows an unauthenticated attacker with direct network access to forge SAML responses, enabling them to provision or gain site administrator privileges. With a CVSS score of 9.8 (CRITICAL), the vulnerability has a low attack complexity and grants full confidentiality, integrity, and availability impact. While there is no public exploit code available (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered significant community attention with 17 mentions and 4 media articles, indicating high awareness and potential for future exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 3.10.0, < 3.10.16CPE matchmatch criteria | cpe:2.3:a:github:enterprise_server:*:*:*:*:*:*:*:* | ||
>= 3.11.0, < 3.11.14CPE matchmatch criteria | cpe:2.3:a:github:enterprise_server:*:*:*:*:*:*:*:* | ||
>= 3.12.0, < 3.12.8CPE matchmatch criteria | cpe:2.3:a:github:enterprise_server:*:*:*:*:*:*:*:* | ||
>= 3.13.0, < 3.13.3CPE matchmatch criteria | cpe:2.3:a:github:enterprise_server:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:L/SC:H/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:U/V:C/RE:H/U:Red
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.