Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-0150

Опубликовано: 09 янв. 2006
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Multiple format string vulnerabilities in the auth_ldap_log_reason function in Apache auth_ldap 1.6.0 and earlier allows remote attackers to execute arbitrary code via various vectors, including the username.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:dave_carrigan:auth_ldap:1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.2.3:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.2.4:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.3.0:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.3.1:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.3.2:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.3.3:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.3.4:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.4.0:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.4.3:*:*:*:*:*:*:*
cpe:2.3:a:dave_carrigan:auth_ldap:1.6.0:*:*:*:*:*:*:*

EPSS

Процентиль: 92%
0.05434
Низкий

7.5 High

CVSS2

Дефекты

CWE-134

Связанные уязвимости

ubuntu
больше 20 лет назад

Multiple format string vulnerabilities in the auth_ldap_log_reason function in Apache auth_ldap 1.6.0 and earlier allows remote attackers to execute arbitrary code via various vectors, including the username.

redhat
больше 20 лет назад

Multiple format string vulnerabilities in the auth_ldap_log_reason function in Apache auth_ldap 1.6.0 and earlier allows remote attackers to execute arbitrary code via various vectors, including the username.

debian
больше 20 лет назад

Multiple format string vulnerabilities in the auth_ldap_log_reason fun ...

github
около 4 лет назад

Multiple format string vulnerabilities in the auth_ldap_log_reason function in Apache auth_ldap 1.6.0 and earlier allows remote attackers to execute arbitrary code via various vectors, including the username.

fstec
больше 20 лет назад

Уязвимость операционной системы Red Hat Enterprise Linux, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 92%
0.05434
Низкий

7.5 High

CVSS2

Дефекты

CWE-134