slapd in OpenLDAP before 2.3.25 allows remote authenticated users with selfwrite Access Control List (ACL) privileges to modify arbitrary Distinguished Names (DN).
2006-09-07T00:04:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 2.3 (LOW)
AV:A/AC:M/Au:S/C:N/I:P/A:N
4.4
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | openldap | openldap | 2.0.20 | Yes |
Application | openldap | openldap | 2.0.21 | Yes |
Application | openldap | openldap | 2.0.22 | Yes |
Application | openldap | openldap | 2.0.23 | Yes |
Application | openldap | openldap | 2.0.24 | Yes |