CVE-2024-33868
CRITICALDescription
An issue was discovered in linqi before 1.4.0.1 on Windows. There is LDAP injection.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| linqi | linqi |
| microsoft | windows |
References
Frequently Asked Questions
What is CVE-2024-33868? +
How severe is CVE-2024-33868? +
What products are affected by CVE-2024-33868? +
How do I check if I'm vulnerable to CVE-2024-33868? +
Related Vulnerabilities
When LDAP connection is activated in Teedy versions between 1.9 to 1.12, the username field of the login form is …
Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability in Apache OFBiz. This issue affects Apache …
Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability in Apache HertzBeat . The attacker needs …
PAC4J is vulnerable to LDAP Injection in multiple methods. A low-privileged remote attacker can inject crafted LDAP syntax into ID-based …
Lemur manages TLS certificate creation. Prior to 1.9.0, Lemur's LDAP authentication module (lemur/auth/ldap.py) constructs LDAP search filters using unsanitized user …
The optional "LDAP contacts provider" could be abused by privileged users to inject LDAP filter strings that allow to access …