Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-4450

Опубликовано: 16 апр. 2012
Источник: redhat
CVSS2: 5.8

Описание

389 Directory Server 1.2.10 does not properly update the ACL when a DN entry is moved by a modrdn operation, which allows remote authenticated users with certain permissions to bypass ACL restrictions and access the DN entry.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=860603389-ds-base: Change on SLAPI_MODRDN_NEWSUPERIOR is not evaluated in ACL (ACL rules bypass possible)

5.8 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

389 Directory Server 1.2.10 does not properly update the ACL when a DN entry is moved by a modrdn operation, which allows remote authenticated users with certain permissions to bypass ACL restrictions and access the DN entry.

nvd
больше 13 лет назад

389 Directory Server 1.2.10 does not properly update the ACL when a DN entry is moved by a modrdn operation, which allows remote authenticated users with certain permissions to bypass ACL restrictions and access the DN entry.

debian
больше 13 лет назад

389 Directory Server 1.2.10 does not properly update the ACL when a DN ...

github
больше 3 лет назад

389 Directory Server 1.2.10 does not properly update the ACL when a DN entry is moved by a modrdn operation, which allows remote authenticated users with certain permissions to bypass ACL restrictions and access the DN entry.

oracle-oval
почти 13 лет назад

ELSA-2013-0503: 389-ds-base security, bug fix, and enhancement update (MODERATE)

5.8 Medium

CVSS2