VDB

CVE-2021-33900

CVE-2021-33900 PUBLISHED

While investigating DIRSTUDIO-1219 it was noticed that configured StartTLS encryption was not applied when any SASL authentication mechanism (DIGEST-MD5, GSSAPI) was used. While investigating DIRSTUDIO-1220 it was noticed that any configured SASL confidentiality layer was not applied. This issue affects Apache Directory Studio version 2.0.0.v20210213-M16 and prior versions.

EPSS 0.19% · 41.0th percentile

Risk Scores

EPSS Score
0.19%
41.0th percentile

Affected Products

VendorProductVersions
Ubuntu:22.04:LTSapache-directory-server0, 2.0.0~M24-4
Ubuntu:18.04:LTSapache-directory-server2.0.0~M24-2~18.04, 0, 2.0.0~M15-4
Ubuntu:24.04:LTSapache-directory-server0, 2.0.0~M26-1, *
Ubuntu:20.04:LTSapache-directory-server2.0.0~M24-3, 0
Ubuntu:25.10apache-directory-server0, 2.0.0~M26-5
Ubuntu:16.04:LTSapache-directory-server2.0.0~M15-2, 0, 2.0.0~M15-1

Timeline

  • Jul 26, 2021 EPSS Score
  • Jul 26, 2021 CVE Published
  • Aug 10, 2021 EPSS Score
  • Sep 23, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Jan 20, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Mar 20, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 18, 2022 EPSS Score
  • Sep 15, 2022 EPSS Score
  • Nov 13, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›