CVE-2018-8763
27.03.2018, 16:29
Roland Gruber Softwareentwicklung LDAP Account Manager before 6.3 has XSS via the dn parameter to the templates/3rdParty/pla/htdocs/cmd.php URI or the template parameter to the templates/3rdParty/pla/htdocs/cmd.php?cmd=rename_form URI.
Vendor | Product | Version |
---|---|---|
debian | debian_linux | 7.0 |
debian | debian_linux | 8.0 |
debian | debian_linux | 9.0 |
ldap-account-manager | ldap_account_manager | 𝑥 < 6.3 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References