Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Unspecified vulnerability in Solaris 8 and 9 allows local users to obtain the LDAP Directory Server root Distinguished Name (rootDN) password when a privileged user (1) runs idsconfig; or "insecurely" runs LDAP2 commands with the -w option, including (2) ldapadd, (3) ldapdelete, (4) ldapmodify, (5) ldapmodrdn, and (6) ldapsearch.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun Solaris LDAP2 RootDN口令泄露漏洞
Vulnerability Description
Solaris是一款由Sun开发和维护的商业性质UNIX操作系统。 如果特权用户使用了idsconfig(1M)命令的话,本地非特权用户就可以获得目录服务器root识别名(rootDN)口令。 如果特权用户不安全的运行任意以下LDAP命令时也可能泄漏rootDN口令: * ldapadd(1) * ldapdelete(1) * ldapmodify(1) * ldapmodrdn(1) * ldapsearch(1) 然后攻击者就可以使用rootDN口令添加、更改、删除和搜索目录服务器中的记录。
CVSS Information
N/A
Vulnerability Type
N/A