Univention Corporate Server univention-directory-notifier...
Moderate severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Sep 30, 2023
Description
Published by the National Vulnerability Database
Jul 17, 2019
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Sep 30, 2023
Univention Corporate Server univention-directory-notifier 12.0.1-3 and earlier is affected by: CWE-213: Intentional Information Exposure. The impact is: Loss of Confidentiality. The component is: function data_on_connection() in src/callback.c. The attack vector is: network connectivity. The fixed version is: 12.0.1-4 and later.
References