CVE-2023-29484

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/10/2023
Last modified:
24/10/2023

Description

In Terminalfour before 8.3.16, misconfigured LDAP users are able to login with an invalid password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:terminalfour:terminalfour:7.4.0004:qp3:*:*:*:*:*:*
cpe:2.3:a:terminalfour:terminalfour:8.2.18.2.3:*:*:*:*:*:*:*
cpe:2.3:a:terminalfour:terminalfour:8.2.18.8:*:*:*:*:*:*:*
cpe:2.3:a:terminalfour:terminalfour:8.3.11.2:*:*:*:*:*:*:*
cpe:2.3:a:terminalfour:terminalfour:8.3.14.2:*:*:*:*:*:*:*
cpe:2.3:a:terminalfour:terminalfour:8.3.16:*:*:*:*:*:*:*