5

CVE-2005-2301

PowerDNS before 2.9.18, when running with an LDAP backend, does not properly escape LDAP queries, which allows remote attackers to cause a denial of service (failure to answer ldap questions) and possibly conduct an LDAP injection attack.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Powerdns ≫ Powerdns Version 2.9.0
Powerdns ≫ Powerdns Version 2.9.1
Powerdns ≫ Powerdns Version 2.9.2
Powerdns ≫ Powerdns Version 2.9.3a
Powerdns ≫ Powerdns Version 2.9.4
Powerdns ≫ Powerdns Version 2.9.5
Powerdns ≫ Powerdns Version 2.9.6
Powerdns ≫ Powerdns Version 2.9.7
Powerdns ≫ Powerdns Version 2.9.8
Powerdns ≫ Powerdns Version 2.9.10
Powerdns ≫ Powerdns Version 2.9.11
Powerdns ≫ Powerdns Version 2.9.12
Powerdns ≫ Powerdns Version 2.9.13
Powerdns ≫ Powerdns Version 2.9.14
Powerdns ≫ Powerdns Version 2.9.15
Powerdns ≫ Powerdns Version 2.9.16
Powerdns ≫ Powerdns Version 2.9.17
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.26% 0.867
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.novell.com/linux/security/advisories/2005_19_sr.html
http://doc.powerdns.com/changelog.html#CHANGELOG-2-9-18
http://marc.info/?l=bugtraq&m=112155941310297&w=2
http://securitytracker.com/id?1014504
http://www.securityfocus.com/bid/14290