[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249622

 
 

909

 
 

195549

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2020-1381 --- 389-ds-base

ID: oval:org.secpod.oval:def:1700293Date: (C)2020-01-13   (M)2023-06-16
Class: PATCHFamily: unix




A flaw was found in the "deref" plugin of 389-ds-base where it could use the "search" permission to display attribute values. In some configurations, this could allow an authenticated attacker to view private attributes, such as password hashes

Platform:
Amazon Linux 2
Product:
389-ds-base
Reference:
ALAS2-2020-1381
CVE-2019-14824
CVE    1
CVE-2019-14824
CPE    3
cpe:/a:fedoraproject:389_directory_server:-
cpe:/o:amazon:linux:2
cpe:/a:fedoraproject:389_directory_server

© SecPod Technologies