CVE Vulnerabilities

CVE-2006-4600

Published: Sep 07, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.3 LOW
AV:A/AC:M/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

slapd in OpenLDAP before 2.3.25 allows remote authenticated users with selfwrite Access Control List (ACL) privileges to modify arbitrary Distinguished Names (DN).

Affected Software

NameVendorStart VersionEnd Version
OpenldapOpenldap2.0.20 (including)2.0.20 (including)
OpenldapOpenldap2.0.21 (including)2.0.21 (including)
OpenldapOpenldap2.0.22 (including)2.0.22 (including)
OpenldapOpenldap2.0.23 (including)2.0.23 (including)
OpenldapOpenldap2.0.24 (including)2.0.24 (including)
Red Hat Enterprise Linux 3RedHatopenldap-0:2.0.27-23*
Red Hat Enterprise Linux 4RedHatopenldap-0:2.2.13-7.4E*

References