Operational Defect Database

BugZero found this defect 133 days ago.

WatchGuard Technologies | kA16S000000bzBtSAI

Firefox users taken back to the IdP portal login screen after they log in successfully

Last update date:

1/7/2024

Affected products:

AuthPoint

Affected releases:

All

AuthPoint

Fixed releases:

All

Description:

Issue

When users authenticate to the AuthPoint IdP portal from the Firefox browser, they might be redirected to the authentication page after they successfully complete MFA. After they log in and complete MFA a second time, the authentication succeeds. This behavior occurs when there is an expired SAML authentication cookie in Firefox. When expired AuthPoint cookies are not deleted in Firefox, the first authentication attempt fails with the expired authentication cookie. The second authentication uses a new cookie and is successful.

Workaround/Solution

No workaround exists at this time. Firefox users can mitigate the impact if they log out of their SAML session when they are finished.

Additional Resources / Links

Share:

BugZero® Risk Score

What's this?

Coming soon

Status

Open

Learn More

Search:

...