Логотип exploitDog
bind:CVE-2022-1949
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-1949

Количество 12

Количество 12

ubuntu логотип

CVE-2022-1949

почти 4 года назад

An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect results, but as that has progressed, can be determined that it actually is an access control bypass. This may allow any remote unauthenticated user to issue a filter that allows searching for database items they do not have access to, including but not limited to potentially userPassword hashes and other sensitive data.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2022-1949

почти 4 года назад

An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect results, but as that has progressed, can be determined that it actually is an access control bypass. This may allow any remote unauthenticated user to issue a filter that allows searching for database items they do not have access to, including but not limited to potentially userPassword hashes and other sensitive data.

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2022-1949

почти 4 года назад

An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect results, but as that has progressed, can be determined that it actually is an access control bypass. This may allow any remote unauthenticated user to issue a filter that allows searching for database items they do not have access to, including but not limited to potentially userPassword hashes and other sensitive data.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2022-1949

почти 4 года назад

An access control bypass vulnerability found in 389-ds-base. That mish ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-x847-vxvj-g6rj

почти 4 года назад

An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect results, but as that has progressed, can be determined that it actually is an access control bypass. This may allow any remote unauthenticated user to issue a filter that allows searching for database items they do not have access to, including but not limited to potentially userPassword hashes and other sensitive data.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2022-04434

около 4 лет назад

Уязвимость фильтра поиска (ldbm_search.c) сервера службы каталогов 389 Directory Server, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2295-1

больше 3 лет назад

Security update for 389-ds

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2105-1

почти 4 года назад

Security update for 389-ds

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2081-1

почти 4 года назад

Security update for 389-ds

EPSS: Низкий
redos логотип

ROS-20240730-05

больше 1 года назад

Уязвимость 389-ds-base

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2109-1

почти 4 года назад

Security update for 389-ds

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2163-1

почти 4 года назад

Security update for 389-ds

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-1949

An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect results, but as that has progressed, can be determined that it actually is an access control bypass. This may allow any remote unauthenticated user to issue a filter that allows searching for database items they do not have access to, including but not limited to potentially userPassword hashes and other sensitive data.

CVSS3: 7.5
1%
Низкий
почти 4 года назад
redhat логотип
CVE-2022-1949

An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect results, but as that has progressed, can be determined that it actually is an access control bypass. This may allow any remote unauthenticated user to issue a filter that allows searching for database items they do not have access to, including but not limited to potentially userPassword hashes and other sensitive data.

CVSS3: 7.4
1%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-1949

An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect results, but as that has progressed, can be determined that it actually is an access control bypass. This may allow any remote unauthenticated user to issue a filter that allows searching for database items they do not have access to, including but not limited to potentially userPassword hashes and other sensitive data.

CVSS3: 7.5
1%
Низкий
почти 4 года назад
debian логотип
CVE-2022-1949

An access control bypass vulnerability found in 389-ds-base. That mish ...

CVSS3: 7.5
1%
Низкий
почти 4 года назад
github логотип
GHSA-x847-vxvj-g6rj

An access control bypass vulnerability found in 389-ds-base. That mishandling of the filter that would yield incorrect results, but as that has progressed, can be determined that it actually is an access control bypass. This may allow any remote unauthenticated user to issue a filter that allows searching for database items they do not have access to, including but not limited to potentially userPassword hashes and other sensitive data.

CVSS3: 7.5
1%
Низкий
почти 4 года назад
fstec логотип
BDU:2022-04434

Уязвимость фильтра поиска (ldbm_search.c) сервера службы каталогов 389 Directory Server, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.5
1%
Низкий
около 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:2295-1

Security update for 389-ds

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2105-1

Security update for 389-ds

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2022:2081-1

Security update for 389-ds

почти 4 года назад
redos логотип
ROS-20240730-05

Уязвимость 389-ds-base

CVSS3: 7.5
1%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2022:2109-1

Security update for 389-ds

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2022:2163-1

Security update for 389-ds

почти 4 года назад

Уязвимостей на страницу