On 2.1.15 version and below of Lider module in LiderAhenk software is leaking it's configurations via an unsecured API. An attacker with an access to the configurations API could get valid LDAP credentials.
History

Mon, 16 Sep 2024 20:00:00 +0000

Type Values Removed Values Added
Description On 2.1.15 version and below of Lider module in LiderAhenk software is leaking it's configurations via an unsecured API. An attacker with an access to the configurations API could get valid LDAP credentials. On 2.1.15 version and below of Lider module in LiderAhenk software is leaking it's configurations via an unsecured API. An attacker with an access to the configurations API could get valid LDAP credentials.

cve-icon MITRE

Status: PUBLISHED

Assigner: TR-CERT

Published: 2021-10-01T14:36:20.926355Z

Updated: 2024-09-16T19:56:05.415Z

Reserved: 2021-09-22T00:00:00

Link: CVE-2021-3825

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-10-01T15:15:07.883

Modified: 2024-09-16T20:15:40.320

Link: CVE-2021-3825

cve-icon Redhat

No data.