CVE-2018-10919
MEDIUM6.5EPSS 1.4%發布日:2018/8/22修改日:2025/12/3
也稱為:ALPINE-CVE-2018-10919DEBIAN-CVE-2018-10919
描述
The Samba Active Directory LDAP server was vulnerable to an information disclosure flaw because of missing access control checks. An authenticated attacker could use this flaw to extract confidential attribute values using LDAP search expressions. Samba versions before 4.6.16, 4.7.9 and 4.8.4 are vulnerable.
受影響套件(2)
- Alpine/sambafrom 0, < 4.8.4-r0
- Debian/sambafrom 0, < 2:4.8.4+dfsg-1
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | MEDIUM6.5 | CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |