Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7012
HistoryJul 11, 2018 - 4:44 a.m.

Information Disclosure Through Race Condition

2018-07-1104:44:19
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
3

0.013 Low

EPSS

Percentile

86.0%

apache-ldap-api is vulnerable to information disclosure through a race condition. The vulnerability exists as it is possible for another thread to use the connection before it is secured by TLS, caused by the weak setup of SSL Filter. This could potentially expose sensitive information such as password.

0.013 Low

EPSS

Percentile

86.0%