Lucene search

K
cvelistApacheCVELIST:CVE-2023-25613
HistoryFeb 20, 2023 - 3:29 p.m.

CVE-2023-25613 LDAP Injection Vulnerability in Apache Kerby

2023-02-2015:29:39
CWE-74
apache
www.cve.org
cve-2023-25613
ldap
injection
vulnerability
apache kerby

9.8 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

66.1%

An LDAP Injection vulnerability exists in theย LdapIdentityBackend of Apache Kerby before 2.0.3.

CNA Affected

[
  {
    "collectionURL": "https://repo.maven.apache.org/maven2",
    "defaultStatus": "unaffected",
    "packageName": "org.apache.kerby:ldap-backend",
    "product": "Apache Kerby LDAP Backend",
    "vendor": "Apache Software Foundation",
    "versions": [
      {
        "lessThan": "2.0.3",
        "status": "affected",
        "version": "0",
        "versionType": "semver"
      }
    ]
  }
]

9.8 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

66.1%