Lucene search

K
cveMitreCVE-2006-4600
HistorySep 07, 2006 - 12:04 a.m.

CVE-2006-4600

2006-09-0700:04:00
mitre
web.nvd.nist.gov
40
openldap
vulnerability
cve-2006-4600
remote access
acl
nvd

CVSS2

2.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:A/AC:M/Au:S/C:N/I:P/A:N

AI Score

6

Confidence

Low

EPSS

0.003

Percentile

70.2%

slapd in OpenLDAP before 2.3.25 allows remote authenticated users with selfwrite Access Control List (ACL) privileges to modify arbitrary Distinguished Names (DN).

Affected configurations

Nvd
Node
openldapopenldapMatch2.0.20
OR
openldapopenldapMatch2.0.21
OR
openldapopenldapMatch2.0.22
OR
openldapopenldapMatch2.0.23
OR
openldapopenldapMatch2.0.24
VendorProductVersionCPE
openldapopenldap2.0.20cpe:2.3:a:openldap:openldap:2.0.20:*:*:*:*:*:*:*
openldapopenldap2.0.21cpe:2.3:a:openldap:openldap:2.0.21:*:*:*:*:*:*:*
openldapopenldap2.0.22cpe:2.3:a:openldap:openldap:2.0.22:*:*:*:*:*:*:*
openldapopenldap2.0.23cpe:2.3:a:openldap:openldap:2.0.23:*:*:*:*:*:*:*
openldapopenldap2.0.24cpe:2.3:a:openldap:openldap:2.0.24:*:*:*:*:*:*:*

References

CVSS2

2.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:A/AC:M/Au:S/C:N/I:P/A:N

AI Score

6

Confidence

Low

EPSS

0.003

Percentile

70.2%