Lucene search

K
cvelistRedhatCVELIST:CVE-2023-0922
HistoryApr 03, 2023 - 12:00 a.m.

CVE-2023-0922

2023-04-0300:00:00
CWE-319
redhat
www.cve.org
6
samba ad dc
passwords
ldap
remote connection
cve-2023-0922

AI Score

6.5

Confidence

High

EPSS

0.002

Percentile

59.9%

The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Samba",
    "versions": [
      {
        "version": "samba 4.18.1, samba 4.17.7, samba 4.16.10",
        "status": "affected"
      }
    ]
  }
]