Логотип exploitDog
bind:CVE-2024-22433
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-22433

Количество 3

Количество 3

nvd логотип

CVE-2024-22433

около 2 лет назад

Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain text when using LdapSettings.get_ldap_info in DP Search. A remote unauthorized unauthenticated attacker could potentially exploit this vulnerability leading to a loss of Confidentiality, Integrity, Protection, and remote takeover of the system. This is a high-severity vulnerability as it allows an attacker to take complete control of DP Search to affect downstream protected devices.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-crhq-582w-h987

около 2 лет назад

Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain text when using LdapSettings.get_ldap_info in DP Search. A remote unauthorized unauthenticated attacker could potentially exploit this vulnerability leading to a loss of Confidentiality, Integrity, Protection, and remote takeover of the system. This is a high-severity vulnerability as it allows an attacker to take complete control of DP Search to affect downstream protected devices.

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2024-01372

около 2 лет назад

Уязвимость компонента LdapSettings.get_ldap_info системы комплексной защиты данных Dell Data Protection Search, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-22433

Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain text when using LdapSettings.get_ldap_info in DP Search. A remote unauthorized unauthenticated attacker could potentially exploit this vulnerability leading to a loss of Confidentiality, Integrity, Protection, and remote takeover of the system. This is a high-severity vulnerability as it allows an attacker to take complete control of DP Search to affect downstream protected devices.

CVSS3: 8.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-crhq-582w-h987

Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain text when using LdapSettings.get_ldap_info in DP Search. A remote unauthorized unauthenticated attacker could potentially exploit this vulnerability leading to a loss of Confidentiality, Integrity, Protection, and remote takeover of the system. This is a high-severity vulnerability as it allows an attacker to take complete control of DP Search to affect downstream protected devices.

CVSS3: 8.8
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2024-01372

Уязвимость компонента LdapSettings.get_ldap_info системы комплексной защиты данных Dell Data Protection Search, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 9.8
0%
Низкий
около 2 лет назад

Уязвимостей на страницу