Multifactor Authentication Flaw in Apereo CAS by Apereo
CVE-2020-27178
7.5HIGH
What is CVE-2020-27178?
The Apereo CAS software contains a vulnerability related to the mishandling of secret keys used in conjunction with Google Authenticator for multifactor authentication. This flaw impacts multiple versions of Apereo CAS, potentially allowing unauthorized access due to compromised authentication mechanisms.
