Описание
The Horde_Ldap library before 2.0.6 for Horde allows remote attackers to bypass authentication by leveraging knowledge of the LDAP bind user DN.
Ссылки
- Mailing List
- Third Party AdvisoryVDB Entry
- Issue Tracking
- Patch
- Mailing List
- Mailing List
- Third Party AdvisoryVDB Entry
- Issue Tracking
- Patch
- Mailing List
Уязвимые конфигурации
Конфигурация 1Версия до 2.0.6 (исключая)
cpe:2.3:a:horde:horde_ldap:*:*:*:*:*:horde:*:*
EPSS
Процентиль: 83%
0.02068
Низкий
8.1 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 8.1
ubuntu
почти 8 лет назад
The Horde_Ldap library before 2.0.6 for Horde allows remote attackers to bypass authentication by leveraging knowledge of the LDAP bind user DN.
CVSS3: 8.1
debian
почти 8 лет назад
The Horde_Ldap library before 2.0.6 for Horde allows remote attackers ...
CVSS3: 8.1
github
больше 3 лет назад
The Horde_Ldap library before 2.0.6 for Horde allows remote attackers to bypass authentication by leveraging knowledge of the LDAP bind user DN.
EPSS
Процентиль: 83%
0.02068
Низкий
8.1 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-287