389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), after the password for a LDAP user has been changed and before the server has been reset, allows remote attackers to read the plaintext password via the unhashed#user#password attribute.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2012-07-03T16:00:00
Updated: 2024-08-06T19:42:31.470Z
Reserved: 2012-05-14T00:00:00
Link: CVE-2012-2678
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-07-03T16:40:33.583
Modified: 2017-09-19T01:34:58.527
Link: CVE-2012-2678
Redhat