Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Sébastien Delafond

Pesquisador deDebian
#37642de 53,640
7.5CVSS total
Vulnerabilidades · 1
PT-2010-4425
7.5
2010-08-20
Zope · Zope-Ldapuserfolder · CVE-2010-2944
**Name of the Vulnerable Software and Affected Versions** zope-ldapuserfolder version 2.9-1 **Description** The issue concerns the authenticate function in LDAPUserFolder/LDAPUserFolder.py, which fails to verify the password for the emergency account. This allows remote attackers to gain privileges. **Recommendations** For zope-ldapuserfolder version 2.9-1, consider disabling the emergency account or restricting its access until a patch is available to verify the password correctly.