Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-1100

Опубликовано: 28 фев. 2012
Источник: redhat
CVSS2: 5.8
EPSS Низкий

Описание

Red Hat JBoss Operations Network (JON) 3.0.x before 3.0.1, 2.4.2, and earlier, when LDAP authentication is enabled and the LDAP bind account credentials are invalid, allows remote attackers to login to LDAP-based accounts via an arbitrary password in a login request.

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=799789JON: LDAP authentication allows any user access if bind credentials are bad

EPSS

Процентиль: 66%
0.01238
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

nvd
больше 12 лет назад

Red Hat JBoss Operations Network (JON) 3.0.x before 3.0.1, 2.4.2, and earlier, when LDAP authentication is enabled and the LDAP bind account credentials are invalid, allows remote attackers to login to LDAP-based accounts via an arbitrary password in a login request.

github
около 4 лет назад

Red Hat JBoss Operations Network (JON) 3.0.x before 3.0.1, 2.4.2, and earlier, when LDAP authentication is enabled and the LDAP bind account credentials are invalid, allows remote attackers to login to LDAP-based accounts via an arbitrary password in a login request.

EPSS

Процентиль: 66%
0.01238
Низкий

5.8 Medium

CVSS2