Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-103364
HistoryNov 13, 2021 - 12:00 a.m.

Apache Traffic Control LDAP filter injection vulnerability

2021-11-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
5

0.006 Low

EPSS

Percentile

78.7%

Apache Traffic Control is a distributed and scalable content distribution solution from the Apache Foundation. An LDAP injection vulnerability exists in Apache Traffic Control, which stems from the fact that a user can send a request with a crafted username to any API version of the POST/login endpoint, which can be exploited by a remote attacker to inject unprocessed content into an LDAP filter.

0.006 Low

EPSS

Percentile

78.7%