Vulnerabilities (CVE)

Filtered by vendor Debian Subscribe
Filtered by product Nss-ldap
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-1073 1 Debian 2 Debian Linux, Nss-ldap 2024-02-15 4.9 MEDIUM 5.5 MEDIUM
nss-ldapd before 0.6.8 uses world-readable permissions for the /etc/nss-ldapd.conf file, which allows local users to obtain a cleartext password for the LDAP server by reading the bindpw field.