Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vffv-j7h7-crc3

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Red Hat JBoss Operations Network (JON) 3.0.x before 3.0.1, 2.4.2, and earlier, when LDAP authentication is enabled and the LDAP bind account credentials are invalid, allows remote attackers to login to LDAP-based accounts via an arbitrary password in a login request.

Red Hat JBoss Operations Network (JON) 3.0.x before 3.0.1, 2.4.2, and earlier, when LDAP authentication is enabled and the LDAP bind account credentials are invalid, allows remote attackers to login to LDAP-based accounts via an arbitrary password in a login request.

EPSS

Процентиль: 53%
0.00305
Низкий

Дефекты

CWE-287

Связанные уязвимости

redhat
почти 14 лет назад

Red Hat JBoss Operations Network (JON) 3.0.x before 3.0.1, 2.4.2, and earlier, when LDAP authentication is enabled and the LDAP bind account credentials are invalid, allows remote attackers to login to LDAP-based accounts via an arbitrary password in a login request.

nvd
почти 12 лет назад

Red Hat JBoss Operations Network (JON) 3.0.x before 3.0.1, 2.4.2, and earlier, when LDAP authentication is enabled and the LDAP bind account credentials are invalid, allows remote attackers to login to LDAP-based accounts via an arbitrary password in a login request.

EPSS

Процентиль: 53%
0.00305
Низкий

Дефекты

CWE-287