When the LDAP connector is started with StartTLS configured, unauthenticated access is granted. This issue affects: all versions of the LDAP connector prior to 1.5.20.9. The LDAP connector is bundled with Identity Management (IDM) and Remote Connector Server (RCS)
2022-09-19T22:15:10.843
2024-11-21T06:37:59.700
Modified
CVSSv3.1: 9.3 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | forgerock | ldap_connector | < 1.5.20.9 | Yes |