Lucene search

K
nvd[email protected]NVD:CVE-2012-2678
HistoryJul 03, 2012 - 4:40 p.m.

CVE-2012-2678

2012-07-0316:40:33
CWE-310
web.nvd.nist.gov
8

CVSS2

1.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:H/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.002

Percentile

54.0%

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), after the password for a LDAP user has been changed and before the server has been reset, allows remote attackers to read the plaintext password via the unhashed#user#password attribute.

Affected configurations

Nvd
Node
redhatdirectory_serverRange8.2
OR
redhatdirectory_serverMatch7.1
OR
redhatdirectory_serverMatch8.0
OR
redhatdirectory_serverMatch8.1
Node
fedoraproject389_directory_serverRange1.2.11.5
OR
fedoraproject389_directory_serverMatch1.2.1
OR
fedoraproject389_directory_serverMatch1.2.2
OR
fedoraproject389_directory_serverMatch1.2.3
OR
fedoraproject389_directory_serverMatch1.2.5
OR
fedoraproject389_directory_serverMatch1.2.5rc1
OR
fedoraproject389_directory_serverMatch1.2.5rc2
OR
fedoraproject389_directory_serverMatch1.2.5rc3
OR
fedoraproject389_directory_serverMatch1.2.5rc4
OR
fedoraproject389_directory_serverMatch1.2.6
OR
fedoraproject389_directory_serverMatch1.2.6a2
OR
fedoraproject389_directory_serverMatch1.2.6a3
OR
fedoraproject389_directory_serverMatch1.2.6a4
OR
fedoraproject389_directory_serverMatch1.2.6rc1
OR
fedoraproject389_directory_serverMatch1.2.6rc2
OR
fedoraproject389_directory_serverMatch1.2.6rc3
OR
fedoraproject389_directory_serverMatch1.2.6rc6
OR
fedoraproject389_directory_serverMatch1.2.6rc7
OR
fedoraproject389_directory_serverMatch1.2.6.1
OR
fedoraproject389_directory_serverMatch1.2.7alpha3
OR
fedoraproject389_directory_serverMatch1.2.7.5
OR
fedoraproject389_directory_serverMatch1.2.8alpha1
OR
fedoraproject389_directory_serverMatch1.2.8alpha2
OR
fedoraproject389_directory_serverMatch1.2.8alpha3
OR
fedoraproject389_directory_serverMatch1.2.8rc1
OR
fedoraproject389_directory_serverMatch1.2.8rc2
OR
fedoraproject389_directory_serverMatch1.2.8.1
OR
fedoraproject389_directory_serverMatch1.2.8.2
OR
fedoraproject389_directory_serverMatch1.2.8.3
OR
fedoraproject389_directory_serverMatch1.2.9.9
OR
fedoraproject389_directory_serverMatch1.2.10alpha8
OR
fedoraproject389_directory_serverMatch1.2.10rc1
OR
fedoraproject389_directory_serverMatch1.2.10.1
OR
fedoraproject389_directory_serverMatch1.2.10.2
OR
fedoraproject389_directory_serverMatch1.2.10.3
OR
fedoraproject389_directory_serverMatch1.2.10.4
OR
fedoraproject389_directory_serverMatch1.2.10.7
OR
fedoraproject389_directory_serverMatch1.2.11.1
VendorProductVersionCPE
redhatdirectory_server*cpe:2.3:a:redhat:directory_server:*:*:*:*:*:*:*:*
redhatdirectory_server7.1cpe:2.3:a:redhat:directory_server:7.1:*:*:*:*:*:*:*
redhatdirectory_server8.0cpe:2.3:a:redhat:directory_server:8.0:*:*:*:*:*:*:*
redhatdirectory_server8.1cpe:2.3:a:redhat:directory_server:8.1:*:*:*:*:*:*:*
fedoraproject389_directory_server*cpe:2.3:a:fedoraproject:389_directory_server:*:*:*:*:*:*:*:*
fedoraproject389_directory_server1.2.1cpe:2.3:a:fedoraproject:389_directory_server:1.2.1:*:*:*:*:*:*:*
fedoraproject389_directory_server1.2.2cpe:2.3:a:fedoraproject:389_directory_server:1.2.2:*:*:*:*:*:*:*
fedoraproject389_directory_server1.2.3cpe:2.3:a:fedoraproject:389_directory_server:1.2.3:*:*:*:*:*:*:*
fedoraproject389_directory_server1.2.5cpe:2.3:a:fedoraproject:389_directory_server:1.2.5:*:*:*:*:*:*:*
fedoraproject389_directory_server1.2.5cpe:2.3:a:fedoraproject:389_directory_server:1.2.5:rc1:*:*:*:*:*:*
Rows per page:
1-10 of 421

CVSS2

1.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:H/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.002

Percentile

54.0%