Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9593-96fp-8w9m

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The authenticate function in LDAPUserFolder/LDAPUserFolder.py in zope-ldapuserfolder 2.9-1 does not verify the password for the emergency account, which allows remote attackers to gain privileges.

The authenticate function in LDAPUserFolder/LDAPUserFolder.py in zope-ldapuserfolder 2.9-1 does not verify the password for the emergency account, which allows remote attackers to gain privileges.

EPSS

Процентиль: 67%
0.00539
Низкий

Дефекты

CWE-287

Связанные уязвимости

ubuntu
больше 15 лет назад

The authenticate function in LDAPUserFolder/LDAPUserFolder.py in zope-ldapuserfolder 2.9-1 does not verify the password for the emergency account, which allows remote attackers to gain privileges.

nvd
больше 15 лет назад

The authenticate function in LDAPUserFolder/LDAPUserFolder.py in zope-ldapuserfolder 2.9-1 does not verify the password for the emergency account, which allows remote attackers to gain privileges.

debian
больше 15 лет назад

The authenticate function in LDAPUserFolder/LDAPUserFolder.py in zope- ...

EPSS

Процентиль: 67%
0.00539
Низкий

Дефекты

CWE-287