debian nss-ldap CVE-2009-1073 vulnerability in Debian Products
Published on March 31, 2009

nss-ldapd before 0.6.8 uses world-readable permissions for the /etc/nss-ldapd.conf file, which allows local users to obtain a cleartext password for the LDAP server by reading the bindpw field.

Vendor Advisory NVD


Products Associated with CVE-2009-1073

stack.watch emails you whenever new vulnerabilities are published in Debian Nss Ldap or Debian Linux. Just hit a watch button to start following.

 
 

Exploit Probability

EPSS
0.38%
Percentile
59.17%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.