CVE-2019-12046
Severity CVSS v4.0:
Pending analysis
Type:
CWE-522
Insufficiently Protected Credentials
Publication date:
22/05/2019
Last modified:
28/05/2025
Description
LemonLDAP::NG -2.0.3 has Incorrect Access Control.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:lemonldap-ng:lemonldap\:\:ng:2.0.3:*:*:*:*:*:*:* | ||
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/commits/master
- https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/issues/1742
- https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/issues/1743
- https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/issues/1744
- https://lemonldap-ng.org/download
- https://projects.ow2.org/view/lemonldap-ng/lemonldap-ng-1-9-19-is-out/
- https://projects.ow2.org/view/lemonldap-ng/lemonldap-ng-2-0-4-is-out/
- https://seclists.org/bugtraq/2019/May/38
- https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/commits/master
- https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/issues/1742
- https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/issues/1743
- https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/issues/1744
- https://lemonldap-ng.org/download
- https://projects.ow2.org/view/lemonldap-ng/lemonldap-ng-1-9-19-is-out/
- https://projects.ow2.org/view/lemonldap-ng/lemonldap-ng-2-0-4-is-out/
- https://seclists.org/bugtraq/2019/May/38