Описание
slapd daemon in IBM Tivoli Directory Server (ITDS) 5.2.0 and 6.0.0 binds using SASL EXTERNAL, which allows attackers to bypass authentication and modify and delete directory data via unknown attack vectors.
Ссылки
- PatchVendor Advisory
- Patch
- PatchVendor Advisory
- PatchVendor Advisory
- US Government Resource
- Patch
- Patch
- Vendor Advisory
- PatchVendor Advisory
- Patch
- PatchVendor Advisory
- PatchVendor Advisory
- US Government Resource
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:tivoli_directory_server:5.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tivoli_directory_server:6.0:*:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00912
Низкий
5.8 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
github
почти 4 года назад
slapd daemon in IBM Tivoli Directory Server (ITDS) 5.2.0 and 6.0.0 binds using SASL EXTERNAL, which allows attackers to bypass authentication and modify and delete directory data via unknown attack vectors.
EPSS
Процентиль: 75%
0.00912
Низкий
5.8 Medium
CVSS2
Дефекты
CWE-264