Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-3652

Опубликовано: 18 апр. 2022
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.4
CVSS3: 6.5

Описание

A flaw was found in 389-ds-base. If an asterisk is imported as password hashes, either accidentally or maliciously, then instead of being inactive, any password will successfully match during authentication. This flaw allows an attacker to successfully authenticate as a user whose password was disabled.

РелизСтатусПримечание
bionic

not-affected

1.3.7.10-1ubuntu1
devel

not-affected

1.3.7.10-1ubuntu1
esm-apps/bionic

not-affected

1.3.7.10-1ubuntu1
esm-apps/focal

not-affected

1.3.7.10-1ubuntu1
esm-apps/jammy

not-affected

1.3.7.10-1ubuntu1
esm-apps/xenial

not-affected

code not present
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [code not present]]
focal

not-affected

1.3.7.10-1ubuntu1
hirsute

not-affected

1.3.7.10-1ubuntu1
impish

not-affected

1.3.7.10-1ubuntu1

Показывать по

EPSS

Процентиль: 40%
0.0018
Низкий

6.4 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
больше 4 лет назад

A flaw was found in 389-ds-base. If an asterisk is imported as password hashes, either accidentally or maliciously, then instead of being inactive, any password will successfully match during authentication. This flaw allows an attacker to successfully authenticate as a user whose password was disabled.

CVSS3: 6.5
nvd
больше 3 лет назад

A flaw was found in 389-ds-base. If an asterisk is imported as password hashes, either accidentally or maliciously, then instead of being inactive, any password will successfully match during authentication. This flaw allows an attacker to successfully authenticate as a user whose password was disabled.

CVSS3: 6.5
debian
больше 3 лет назад

A flaw was found in 389-ds-base. If an asterisk is imported as passwor ...

suse-cvrf
больше 4 лет назад

Security update for 389-ds

suse-cvrf
больше 4 лет назад

Security update for 389-ds

EPSS

Процентиль: 40%
0.0018
Низкий

6.4 Medium

CVSS2

6.5 Medium

CVSS3