Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ldapscripts 1.4 and 1.7 sends a password as a command line argument when calling some LDAP programs, which might allow local users to read the password by listing the process and its arguments, as demonstrated by a call to ldappasswd in the _changepassword function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ldapscripts Local _changepassword函数信息泄露漏洞
Vulnerability Description
ldapscripts 1.4和1.7以命令行参数发送一个密码,当激活一些LDAP程序时,本地用户可以借助列出程序和参数读取密码,例如在_changepassword函数中激活ldappasswd。
CVSS Information
N/A
Vulnerability Type
N/A