Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Noriko Hosoi

#44282of 53,633
6Total CVSS
Vulnerabilities · 1
PT-2012-5407
6.0
2012-10-01
Red Hat · 389 Directory Server · CVE-2012-4450
**Name of the Vulnerable Software and Affected Versions** 389 Directory Server version 1.2.10 **Description** The issue arises from the improper update of the Access Control List (ACL) when a Distinguished Name (DN) entry is moved by a modrdn operation. This allows remote authenticated users with specific permissions to bypass ACL restrictions and access the DN entry. **Recommendations** For 389 Directory Server version 1.2.10, consider restricting access to the modrdn operation until a proper fix is applied to ensure the ACL is correctly updated when a DN entry is moved.