Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

EPSS

Процентиль: 52%
0.00294
Низкий

7.5 High

CVSS3

Дефекты

CWE-305

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 года назад

A flaw was found in dogtag-pki and pki-core. The token authentication scheme can be bypassed with a LDAP injection. By passing the query string parameter sessionID=*, an attacker can authenticate with an existing session saved in the LDAP directory server, which may lead to escalation of privilege.

CVSS3: 7.5
redhat
около 1 года назад

A flaw was found in dogtag-pki and pki-core. The token authentication scheme can be bypassed with a LDAP injection. By passing the query string parameter sessionID=*, an attacker can authenticate with an existing session saved in the LDAP directory server, which may lead to escalation of privilege.

CVSS3: 7.5
debian
около 1 года назад

A flaw was found in dogtag-pki and pki-core. The token authentication ...

CVSS3: 7.5
redos
5 месяцев назад

Уязвимость pki-server

rocky
12 месяцев назад

Important: pki-core security update

EPSS

Процентиль: 52%
0.00294
Низкий

7.5 High

CVSS3

Дефекты

CWE-305