VDB

GCVE-110-MAGEIA-2018-235

GCVE-110-MAGEIA-2018-235
Advisory Published
Vulnetix · Advisory published May 16, 2018
It was discovered that spring-ldap would under some circumstances allow authentication with a correct username but an arbitrary password (CVE-2017-8028).

Affected Products

VendorProductVersionsPlatforms
Mageiaspring-ldap0 (affected), 1.3.1-14.1.mga6 (unaffected)

Browse GCVE Records

73,877 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›