Lucene search

K
osvGoogleOSV:CVE-2018-5730
HistoryMar 06, 2018 - 8:29 p.m.

CVE-2018-5730

2018-03-0620:29:00
Google
osv.dev
7

6.9 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

53.0%

MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to circumvent a DN containership check by supplying both a “linkdn” and “containerdn” database argument, or by supplying a DN string which is a left extension of a container DN string but is not hierarchically within the container DN.