Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-8750

Опубликовано: 19 фев. 2018
Источник: debian
EPSS Низкий

Описание

Apache Karaf prior to 4.0.8 used the LDAPLoginModule to authenticate users to a directory via LDAP. However, it did not encoding usernames properly and hence was vulnerable to LDAP injection attacks leading to a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
apache-karafitppackage

EPSS

Процентиль: 81%
0.0151
Низкий

Связанные уязвимости

CVSS3: 7.5
redhat
около 9 лет назад

Apache Karaf prior to 4.0.8 used the LDAPLoginModule to authenticate users to a directory via LDAP. However, it did not encoding usernames properly and hence was vulnerable to LDAP injection attacks leading to a denial of service.

CVSS3: 6.5
nvd
почти 8 лет назад

Apache Karaf prior to 4.0.8 used the LDAPLoginModule to authenticate users to a directory via LDAP. However, it did not encoding usernames properly and hence was vulnerable to LDAP injection attacks leading to a denial of service.

CVSS3: 6.5
github
около 7 лет назад

Moderate severity vulnerability that affects org.apache.karaf:apache-karaf

EPSS

Процентиль: 81%
0.0151
Низкий