Логотип exploitDog
bind:CVE-2023-23749
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-23749

Количество 2

Количество 2

nvd логотип

CVE-2023-23749

около 3 лет назад

The 'LDAP Integration with Active Directory and OpenLDAP - NTLM & Kerberos Login' extension is vulnerable to LDAP Injection since is not properly sanitizing the 'username' POST parameter. An attacker can manipulate this paramter to dump arbitrary contents form the LDAP Database.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-84gr-vfg9-783r

около 3 лет назад

The 'LDAP Integration with Active Directory and OpenLDAP - NTLM & Kerberos Login' extension is vulnerable to LDAP Injection since is not properly sanitizing the 'username' POST parameter. An attacker can manipulate this paramter to dump arbitrary contents form the LDAP Database.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-23749

The 'LDAP Integration with Active Directory and OpenLDAP - NTLM & Kerberos Login' extension is vulnerable to LDAP Injection since is not properly sanitizing the 'username' POST parameter. An attacker can manipulate this paramter to dump arbitrary contents form the LDAP Database.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-84gr-vfg9-783r

The 'LDAP Integration with Active Directory and OpenLDAP - NTLM & Kerberos Login' extension is vulnerable to LDAP Injection since is not properly sanitizing the 'username' POST parameter. An attacker can manipulate this paramter to dump arbitrary contents form the LDAP Database.

CVSS3: 7.5
0%
Низкий
около 3 лет назад

Уязвимостей на страницу