logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-41580

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-41580

Description:
Phpipam before v1.5.2 was discovered to contain a LDAP injection vulnerability via the dname parameter at /users/ad-search-result.php. This vulnerability allows attackers to enumerate arbitrary fields in the LDAP server and access sensitive data via a crafted POST request.
Last updated date:
10/06/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
10/06/2023
Reference url to background

https://github.com/ehtec/phpipam-exploit

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy