slapd daemon in IBM Tivoli Directory Server (ITDS) 5.2.0 and 6.0.0 binds using SASL EXTERNAL, which allows attackers to bypass authentication and modify and delete directory data via unknown attack vectors.
2005-11-16T07:42:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 5.8 (MEDIUM)
AV:A/AC:L/Au:N/C:P/I:P/A:P
6.5
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | tivoli_directory_server | 5.2.0 | Yes |
Application | ibm | tivoli_directory_server | 6.0 | Yes |