TLS Vulnerability in psPAS PowerShell Module Affects SAML Authentication Process
CVE-2025-59270
What is CVE-2025-59270?
The psPAS PowerShell module has a vulnerability in the 'Get-PASSAMLResponse' function that fails to enforce TLS 1.2 for SAML authentication. This oversight allows an unauthenticated attacker to position themselves in a Man-in-the-Middle attack, enabling them to manipulate the TLS handshake. Consequently, the attacker can downgrade the connection to a deprecated protocol, exposing sensitive data and compromising the security of the authentication process. To mitigate this risk, users should upgrade to version 7.0.209 or later.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
psPAS 6.4.85 < 7.0.209
psPAS 7.0.209
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
