CVE-2019-13031
28.06.2019, 23:15
LemonLDAP::NG before 1.9.20 has an XML External Entity (XXE) issue when submitting a notification to the notification server. By default, the notification server is not enabled and has a "deny all" rule.Enginsight
| Vendor | Product | Version |
|---|---|---|
| lemonldap-ng | lemonldap\ | 𝑥 < 1.9.20 |
| debian | debian_linux | 8.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References