Back to search
CVE-2011-0002
Published: Jan 22, 2011
Modified: Aug 6, 2024
PUBLISHED
Description
libuser before 0.57 uses a cleartext password value of (1) !! or (2) x for new LDAP user accounts, which makes it easier for remote attackers to obtain access by specifying one of these values.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
RHSA-2011:0170
vendor-advisory
x_refsource_REDHAT
43047
third-party-advisory
x_refsource_SECUNIA
1024960
vdb-entry
x_refsource_SECTRACK
https://bugzilla.redhat.com/show_bug.cgi?id=643227
x_refsource_CONFIRM
FEDORA-2011-0316
vendor-advisory
x_refsource_FEDORA
42891
third-party-advisory
x_refsource_SECUNIA
45791
vdb-entry
x_refsource_BID
ADV-2011-0226
vdb-entry
x_refsource_VUPEN
libuser-password-security-bypass(64677)
vdb-entry
x_refsource_XF
ADV-2011-0201
vdb-entry
x_refsource_VUPEN
42966
third-party-advisory
x_refsource_SECUNIA
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705
x_refsource_CONFIRM
https://fedorahosted.org/libuser/browser/NEWS?rev=libuser-0.57
x_refsource_CONFIRM
ADV-2011-0184
vdb-entry
x_refsource_VUPEN
70421
vdb-entry
x_refsource_OSVDB
MDVSA-2011:019
vendor-advisory
x_refsource_MANDRIVA
FEDORA-2011-0320
vendor-advisory
x_refsource_FEDORA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now