Various resources in Atlassian Crowd before version 2.10.1 allow remote attackers with administration rights to learn the passwords of configured LDAP directories by examining the responses to requests for these resources.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-01-29T02:00:00Z

Updated: 2024-09-16T18:24:07.148Z

Reserved: 2019-01-28T00:00:00Z

Link: CVE-2016-10740

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-01-29T02:29:00.217

Modified: 2019-01-31T17:01:50.070

Link: CVE-2016-10740

cve-icon Redhat

No data.