Lucene search

K
cve[email protected]CVE-2014-3562
HistoryAug 21, 2014 - 2:55 p.m.

CVE-2014-3562

2014-08-2114:55:04
CWE-200
web.nvd.nist.gov
61
cve-2014-3562
red hat
directory server
389 directory server
debugging
remote attackers
sensitive data
metadata
directory
search

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.2 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

70.4%

Red Hat Directory Server 8 and 389 Directory Server, when debugging is enabled, allows remote attackers to obtain sensitive replicated metadata by searching the directory.

Affected configurations

NVD
Node
fedoraproject389_directory_serverMatch1.2.1
OR
fedoraproject389_directory_serverMatch1.2.2
OR
fedoraproject389_directory_serverMatch1.2.3
OR
fedoraproject389_directory_serverMatch1.2.5
OR
fedoraproject389_directory_serverMatch1.2.5rc1
OR
fedoraproject389_directory_serverMatch1.2.5rc2
OR
fedoraproject389_directory_serverMatch1.2.5rc3
OR
fedoraproject389_directory_serverMatch1.2.5rc4
OR
fedoraproject389_directory_serverMatch1.2.6
OR
fedoraproject389_directory_serverMatch1.2.6a2
OR
fedoraproject389_directory_serverMatch1.2.6a3
OR
fedoraproject389_directory_serverMatch1.2.6a4
OR
fedoraproject389_directory_serverMatch1.2.6rc1
OR
fedoraproject389_directory_serverMatch1.2.6rc2
OR
fedoraproject389_directory_serverMatch1.2.6rc3
OR
fedoraproject389_directory_serverMatch1.2.6rc6
OR
fedoraproject389_directory_serverMatch1.2.6rc7
OR
fedoraproject389_directory_serverMatch1.2.6.1
OR
fedoraproject389_directory_serverMatch1.2.7alpha3
OR
fedoraproject389_directory_serverMatch1.2.7.5
OR
fedoraproject389_directory_serverMatch1.2.8alpha1
OR
fedoraproject389_directory_serverMatch1.2.8alpha2
OR
fedoraproject389_directory_serverMatch1.2.8alpha3
OR
fedoraproject389_directory_serverMatch1.2.8rc1
OR
fedoraproject389_directory_serverMatch1.2.8rc2
OR
fedoraproject389_directory_serverMatch1.2.8.1
OR
fedoraproject389_directory_serverMatch1.2.8.2
OR
fedoraproject389_directory_serverMatch1.2.8.3
OR
fedoraproject389_directory_serverMatch1.2.9.9
OR
fedoraproject389_directory_serverMatch1.2.10
OR
fedoraproject389_directory_serverMatch1.2.10alpha8
OR
fedoraproject389_directory_serverMatch1.2.10rc1
OR
fedoraproject389_directory_serverMatch1.2.10.2
OR
fedoraproject389_directory_serverMatch1.2.10.3
OR
fedoraproject389_directory_serverMatch1.2.10.4
OR
fedoraproject389_directory_serverMatch1.2.10.11
OR
fedoraproject389_directory_serverMatch1.2.11.1
OR
fedoraproject389_directory_serverMatch1.2.11.5
OR
fedoraproject389_directory_serverMatch1.2.11.6
OR
fedoraproject389_directory_serverMatch1.2.11.8
OR
fedoraproject389_directory_serverMatch1.2.11.9
OR
fedoraproject389_directory_serverMatch1.2.11.10
OR
fedoraproject389_directory_serverMatch1.2.11.11
OR
fedoraproject389_directory_serverMatch1.2.11.12
OR
fedoraproject389_directory_serverMatch1.2.11.13
OR
fedoraproject389_directory_serverMatch1.2.11.14
OR
fedoraproject389_directory_serverMatch1.2.11.15
OR
fedoraproject389_directory_serverMatch1.2.11.17
OR
fedoraproject389_directory_serverMatch1.2.11.19
OR
fedoraproject389_directory_serverMatch1.2.11.20
OR
fedoraproject389_directory_serverMatch1.2.11.21
OR
fedoraproject389_directory_serverMatch1.2.11.22
OR
fedoraproject389_directory_serverMatch1.2.11.23
OR
fedoraproject389_directory_serverMatch1.2.11.25
OR
fedoraproject389_directory_serverMatch1.2.11.26
OR
fedoraproject389_directory_serverMatch1.3.0.2
OR
fedoraproject389_directory_serverMatch1.3.0.3
OR
fedoraproject389_directory_serverMatch1.3.0.4
OR
fedoraproject389_directory_serverMatch1.3.0.5
OR
fedoraproject389_directory_serverMatch1.3.0.6
OR
fedoraproject389_directory_serverMatch1.3.0.7
OR
fedoraproject389_directory_serverMatch1.3.0.8
OR
redhatdirectory_serverMatch8.0
OR
redhatenterprise_linuxMatch6.0
OR
redhatenterprise_linuxMatch7.0

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.2 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

70.4%