389-ds-base是一个高度可用、功能齐全、可靠且安全的 LDAP 服务器实现。它处理世界上许多最大的 LDAP 部署。 389-ds-base 1.3.6.1版本至1.4.0.3版本存在授权问题漏洞,该漏洞源于在身份验证过程中并不总是正确处理内部哈希比较操作,未经身份验证的远程攻击者利用该漏洞可能会绕过身份验证过程。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat, Inc. | 389-ds-base | since 1.3.6.1 up to and including 1.4.0.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-1047 | Wildfly 输入验证错误漏洞 | |
| CVE-2018-1048 | Jboss EAP undertow AJP connector 路径遍历漏洞 |
No comments yet