Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-2678

Опубликовано: 20 июн. 2012
Источник: redhat
CVSS2: 4
EPSS Низкий

Описание

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), after the password for a LDAP user has been changed and before the server has been reset, allows remote attackers to read the plaintext password via the unhashed#user#password attribute.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=829933rhds/389: plaintext password disclosure flaw

EPSS

Процентиль: 47%
0.00238
Низкий

4 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), after the password for a LDAP user has been changed and before the server has been reset, allows remote attackers to read the plaintext password via the unhashed#user#password attribute.

nvd
больше 13 лет назад

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), after the password for a LDAP user has been changed and before the server has been reset, allows remote attackers to read the plaintext password via the unhashed#user#password attribute.

debian
больше 13 лет назад

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server bef ...

github
больше 3 лет назад

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), after the password for a LDAP user has been changed and before the server has been reset, allows remote attackers to read the plaintext password via the unhashed#user#password attribute.

oracle-oval
больше 13 лет назад

ELSA-2012-0997: 389-ds-base security update (MODERATE)

EPSS

Процентиль: 47%
0.00238
Низкий

4 Medium

CVSS2