[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253164

 
 

909

 
 

197077

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2023-0922Date: (C)2023-04-05   (M)2024-01-04


The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score : 5.9CVSS Score :
Exploit Score: 2.2Exploit Score:
Impact Score: 3.6Impact Score:
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: NETWORKAccess Vector:
Attack Complexity: HIGHAccess Complexity:
Privileges Required: NONEAuthentication:
User Interaction: NONEConfidentiality:
Scope: UNCHANGEDIntegrity:
Confidentiality: HIGHAvailability:
Integrity: NONE 
Availability: NONE 
  
Reference:
FEDORA-2023-1c172e3264
GLSA-202309-06
https://security.netapp.com/advisory/ntap-20230406-0007/
https://www.samba.org/samba/security/CVE-2023-0922.html

CPE    1
cpe:/a:samba:samba
CWE    1
CWE-319
OVAL    13
oval:org.secpod.oval:def:125235
oval:org.secpod.oval:def:125234
oval:org.secpod.oval:def:91742
oval:org.secpod.oval:def:125295
...

© SecPod Technologies