Required CVE Record Information
Description
Under certain ldap conditions, Cacti authentication can be bypassed with certain credential types.
References 7 Total
- https://github.com/Cacti/cacti/issues/4562
- lists.debian.org: [debian-lts-announce] 20220329 [SECURITY] [DLA 2965-1] cacti security update mailing-list
- lists.fedoraproject.org: FEDORA-2022-6a7e259e15 vendor-advisory
- lists.fedoraproject.org: FEDORA-2022-e619e3d5d0 vendor-advisory
- lists.fedoraproject.org: FEDORA-2022-70f5c7ff72 vendor-advisory
- debian.org: DSA-5298 vendor-advisory
- lists.debian.org: [debian-lts-announce] 20221231 [SECURITY] [DLA 3252-1] cacti security update mailing-list
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 7 Total
- https://github.com/Cacti/cacti/issues/4562 x_transferred
- lists.debian.org: [debian-lts-announce] 20220329 [SECURITY] [DLA 2965-1] cacti security update mailing-listx_transferred
- lists.fedoraproject.org: FEDORA-2022-6a7e259e15 vendor-advisoryx_transferred
- lists.fedoraproject.org: FEDORA-2022-e619e3d5d0 vendor-advisoryx_transferred
- lists.fedoraproject.org: FEDORA-2022-70f5c7ff72 vendor-advisoryx_transferred
- debian.org: DSA-5298 vendor-advisoryx_transferred
- lists.debian.org: [debian-lts-announce] 20221231 [SECURITY] [DLA 3252-1] cacti security update mailing-listx_transferred