Lucene search

K
redhatcveRedhat.comRH:CVE-2018-2588
HistoryOct 11, 2019 - 10:21 a.m.

CVE-2018-2588

2019-10-1110:21:22
redhat.com
access.redhat.com
16

0.001 Low

EPSS

Percentile

44.6%

It was discovered that the LDAP component of OpenJDK failed to properly encode special characters in user names when adding them to an LDAP search query. A remote attacker could possibly use this flaw to manipulate LDAP queries performed by the LdapLoginModule class.