Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-1966

Опубликовано: 05 фев. 2026
Источник: nvd
EPSS Низкий

Описание

YugabyteDB Anywhere displays LDAP bind passwords configured via gflags in cleartext within the web UI. An authenticated user with access to the configuration view could obtain LDAP credentials, potentially enabling unauthorized access to external directory services.

EPSS

Процентиль: 4%
0.00019
Низкий

Дефекты

CWE-522

Связанные уязвимости

github
2 дня назад

YugabyteDB Anywhere displays LDAP bind passwords configured via gflags in cleartext within the web UI. An authenticated user with access to the configuration view could obtain LDAP credentials, potentially enabling unauthorized access to external directory services.

EPSS

Процентиль: 4%
0.00019
Низкий

Дефекты

CWE-522