Логотип exploitDog
bind:CVE-2018-11749
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-11749

Количество 4

Количество 4

ubuntu логотип

CVE-2018-11749

больше 7 лет назад

When users are configured to use startTLS with RBAC LDAP, at login time, the user's credentials are sent via plaintext to the LDAP server. This affects Puppet Enterprise 2018.1.3, 2017.3.9, and 2016.4.14, and is fixed in Puppet Enterprise 2018.1.4, 2017.3.10, and 2016.4.15. It scored an 8.5 CVSS score.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2018-11749

больше 7 лет назад

When users are configured to use startTLS with RBAC LDAP, at login time, the user's credentials are sent via plaintext to the LDAP server. This affects Puppet Enterprise 2018.1.3, 2017.3.9, and 2016.4.14, and is fixed in Puppet Enterprise 2018.1.4, 2017.3.10, and 2016.4.15. It scored an 8.5 CVSS score.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2018-11749

больше 7 лет назад

When users are configured to use startTLS with RBAC LDAP, at login tim ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-qh8x-vwrj-w4f2

больше 3 лет назад

When users are configured to use startTLS with RBAC LDAP, at login time, the user's credentials are sent via plaintext to the LDAP server. This affects Puppet Enterprise 2018.1.3, 2017.3.9, and 2016.4.14, and is fixed in Puppet Enterprise 2018.1.4, 2017.3.10, and 2016.4.15. It scored an 8.5 CVSS score.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-11749

When users are configured to use startTLS with RBAC LDAP, at login time, the user's credentials are sent via plaintext to the LDAP server. This affects Puppet Enterprise 2018.1.3, 2017.3.9, and 2016.4.14, and is fixed in Puppet Enterprise 2018.1.4, 2017.3.10, and 2016.4.15. It scored an 8.5 CVSS score.

CVSS3: 9.8
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-11749

When users are configured to use startTLS with RBAC LDAP, at login time, the user's credentials are sent via plaintext to the LDAP server. This affects Puppet Enterprise 2018.1.3, 2017.3.9, and 2016.4.14, and is fixed in Puppet Enterprise 2018.1.4, 2017.3.10, and 2016.4.15. It scored an 8.5 CVSS score.

CVSS3: 9.8
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-11749

When users are configured to use startTLS with RBAC LDAP, at login tim ...

CVSS3: 9.8
0%
Низкий
больше 7 лет назад
github логотип
GHSA-qh8x-vwrj-w4f2

When users are configured to use startTLS with RBAC LDAP, at login time, the user's credentials are sent via plaintext to the LDAP server. This affects Puppet Enterprise 2018.1.3, 2017.3.9, and 2016.4.14, and is fixed in Puppet Enterprise 2018.1.4, 2017.3.10, and 2016.4.15. It scored an 8.5 CVSS score.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу