ZeroHour

CVE-2023-44038

CVSS 3.1
6.5 medium
EPSS
<1%p24
Published
()
Modified
Description

In VeridiumID before 3.5.0, the identity provider page allows an unauthenticated attacker to discover information about registered users via an LDAP injection attack.

Vendors
veridiumid
Products
veridiumad
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.