Описание
Unspecified vulnerability in admin.pl in SQL-Ledger before 2.6.26 and LedgerSMB before 1.1.9 allows remote attackers to bypass authentication via unknown vectors that prevents a password check from occurring.
Ссылки
- Vendor Advisory
- PatchVendor Advisory
- Patch
- Vendor Advisory
- PatchVendor Advisory
- Patch
Уязвимые конфигурации
Конфигурация 1Версия до 1.1.8 (включая)Версия до 2.6.25 (включая)
Одно из
cpe:2.3:a:ledgersmb:ledgersmb:*:*:*:*:*:*:*:*
cpe:2.3:a:ledgersmb:ledgersmb:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ledgersmb:ledgersmb:1.1.0:*:*:*:*:*:*:*
cpe:2.3:a:ledgersmb:ledgersmb:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:ledgersmb:ledgersmb:1.1.5:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:*:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.4:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.5:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.6:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.7:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.8:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.9:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.10:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.11:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.12:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.13:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.14:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.15:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.4.16:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.0:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.1:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.2:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.3:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.4:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.5:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.6:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.7:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.8:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.9:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.10:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.11:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.12:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.13:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.14:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.15:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.16:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.17:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.18:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.19:*:*:*:*:*:*:*
cpe:2.3:a:sql-ledger:sql-ledger:2.6.21:*:*:*:*:*:*:*
EPSS
Процентиль: 74%
0.00834
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
ubuntu
больше 18 лет назад
Unspecified vulnerability in admin.pl in SQL-Ledger before 2.6.26 and LedgerSMB before 1.1.9 allows remote attackers to bypass authentication via unknown vectors that prevents a password check from occurring.
debian
больше 18 лет назад
Unspecified vulnerability in admin.pl in SQL-Ledger before 2.6.26 and ...
github
больше 3 лет назад
Unspecified vulnerability in admin.pl in SQL-Ledger before 2.6.26 and LedgerSMB before 1.1.9 allows remote attackers to bypass authentication via unknown vectors that prevents a password check from occurring.
EPSS
Процентиль: 74%
0.00834
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other