Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-2746

Опубликовано: 10 мая 2012
Источник: redhat
CVSS2: 1.2

Описание

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), when the password of a LDAP user has been changed and audit logging is enabled, saves the new password to the log in plain text, which allows remote authenticated users to read the password.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Directory Server 9Directory ServerAffected
Red Hat Directory Server 8 for RHEL 5redhat-ds-baseFixedRHSA-2012:104126.06.2012
Red Hat Enterprise Linux 6389-ds-baseFixedRHSA-2012:099720.06.2012

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=833482rhds/389: plaintext password disclosure in audit log

1.2 Low

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), when the password of a LDAP user has been changed and audit logging is enabled, saves the new password to the log in plain text, which allows remote authenticated users to read the password.

nvd
больше 13 лет назад

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), when the password of a LDAP user has been changed and audit logging is enabled, saves the new password to the log in plain text, which allows remote authenticated users to read the password.

debian
больше 13 лет назад

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server bef ...

github
больше 3 лет назад

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), when the password of a LDAP user has been changed and audit logging is enabled, saves the new password to the log in plain text, which allows remote authenticated users to read the password.

oracle-oval
больше 13 лет назад

ELSA-2012-0997: 389-ds-base security update (MODERATE)

1.2 Low

CVSS2