Описание
The SASL authentication functionality in 389 Directory Server before 1.2.11.26 allows remote authenticated users to connect as an arbitrary user and gain privileges via the authzid parameter in a SASL/GSSAPI bind.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 1.3.2.16-0ubuntu1 |
esm-apps/xenial | not-affected | 1.3.2.16-0ubuntu1 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [1.3.2.16-0ubuntu1]] |
lucid | DNE | |
precise | ignored | end of life |
precise/esm | DNE | precise was needed |
quantal | ignored | end of life |
saucy | ignored | end of life |
trusty | not-affected | 1.3.2.16-0ubuntu1 |
trusty/esm | DNE | trusty was not-affected [1.3.2.16-0ubuntu1] |
Показывать по
Ссылки на источники
EPSS
6.5 Medium
CVSS2
Связанные уязвимости
The SASL authentication functionality in 389 Directory Server before 1.2.11.26 allows remote authenticated users to connect as an arbitrary user and gain privileges via the authzid parameter in a SASL/GSSAPI bind.
The SASL authentication functionality in 389 Directory Server before 1.2.11.26 allows remote authenticated users to connect as an arbitrary user and gain privileges via the authzid parameter in a SASL/GSSAPI bind.
The SASL authentication functionality in 389 Directory Server before 1 ...
The SASL authentication functionality in 389 Directory Server before 1.2.11.26 allows remote authenticated users to connect as an arbitrary user and gain privileges via the authzid parameter in a SASL/GSSAPI bind.
EPSS
6.5 Medium
CVSS2