Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2023-0922
Disclosure Date: April 03, 2023 (last updated October 08, 2023)
The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.
0
Attacker Value
Unknown
CVE-2023-0614
Disclosure Date: April 03, 2023 (last updated October 08, 2023)
The fix in 4.6.16, 4.7.9, 4.8.4 and 4.9.7 for CVE-2018-10919 Confidential attribute disclosure vi LDAP filters was insufficient and an attacker may be able to obtain confidential BitLocker recovery keys from a Samba AD DC.
0
Attacker Value
Unknown
CVE-2023-0225
Disclosure Date: April 03, 2023 (last updated October 08, 2023)
A flaw was found in Samba. An incomplete access check on dnsHostName allows authenticated but otherwise unprivileged users to delete this attribute from any object in the directory.
0