PT-2005-1926 · Ibm · As/400
Shalom Carmel
·
Published
2005-03-29
·
Updated
2016-10-18
·
CVE-2005-0899
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
AS/400 version OS400 5.2
Description
The issue concerns AS/400 running OS400 5.2, where LDAP is installed and enabled by default. This setup allows remote authenticated users to obtain OS/400 user profiles by performing a search.
Recommendations
For AS/400 version OS400 5.2, consider disabling the LDAP service or restricting access to it to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
As/400