2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2004-0823" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2004-09-07T04:00:00.000" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-20T23:49:29.803" ,
2023-04-24 12:24:31 +02:00
"vulnStatus" : "Modified" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "OpenLDAP 1.0 through 2.1.19, as used in Apple Mac OS 10.3.4 and 10.3.5 and possibly other operating systems, may allow certain authentication schemes to use hashed (crypt) passwords in the userPassword attribute as if they were plaintext passwords, which allows remote attackers to re-use hashed passwords without decrypting them."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 7.5 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "NETWORK" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "PARTIAL" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "PARTIAL"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "HIGH" ,
"exploitabilityScore" : 10.0 ,
"impactScore" : 6.4 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-Other"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "086DC60F-F530-4515-8F3D-87F30DB9B322"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.0.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1D538927-82D5-476E-9C85-2E9297316D44"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.0.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2A904832-A6D6-45D4-B07C-79ED1FE47A80"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.0.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1BB554A4-EEC2-4E17-9F32-27A580B9E389"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "191DB249-6A73-4561-8CCA-565D1525CB31"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.1.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "34A5D9A5-FB1D-4ACF-846A-4DB73196122C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.1.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "41400CE6-FA51-435C-93F7-B31FE42F18AE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.1.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6022ABEB-6825-4A5F-9884-74F94C2387F8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.1.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D2F15789-334D-460D-B5B3-FCC71087D107"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F77B1548-BB6D-4618-AE7B-E97F91A0AF5D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B7064C52-1211-42B8-BF1F-C22D800AED07"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1CD95826-E44A-48C6-BAAB-77A905CAE6B3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FEEA6BB6-41FC-4F15-A95F-9B052F062454"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E90766C1-6DBD-435C-85E1-920DAFA26D67"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "8CD13DAE-9588-4540-9183-FB80C507F985"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "526366F3-52F0-4816-A356-8F39B718C048"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AC07AD0D-5DF9-41A4-8592-CEFF1842355D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "30017C56-42A9-4AF9-B5B3-7357E424F837"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C8A51F38-3F5A-4F6D-93EE-776B5C2FF48F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.10:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "8DBEC27E-3220-42CE-B6CC-675F387CB506"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.11:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E641DFFB-CBAF-4DCF-944F-443CFF836A53"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.12:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A552E270-5C9C-40DC-B23D-97C8D995B8FE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:1.2.13:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "53DF812C-E1F8-46D3-A072-3FBE696ADC33"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "552F2E25-DDB8-49A6-844A-8520696DBE5B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "03D75A36-41C4-464F-8DC4-42C841ABC087"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1C3EE919-D05C-4625-85FE-132F6F2B932C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "20D99A58-8D7E-4586-A9BF-1DD2A1DBB8D3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DEBA0118-545E-4D7B-B819-34D157B2BA6D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "67826609-F4CA-42CB-A5D0-B4503DDE2C92"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "61676BBD-95B8-44C9-BD66-79F00381BF86"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "719A9B1D-8E32-461F-BCD4-F72C6AD3E63E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BFD73969-39F8-4849-AF6A-15ACDC2E4537"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DB8C1DD2-865A-4CF2-8137-3C40C01C9EAC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.10:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EE38B045-2224-43D1-8618-0885505865C6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.11:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5D26DAC5-EDBD-42D8-A877-1E6EA666D72B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.11_9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E7AE325E-514C-40A1-AA56-D605377B5D90"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.11_11:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "19397A11-E549-4F31-8007-8D5F3C0AABB1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.11_11s:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1C659213-271D-4F22-AE14-A1646A612D2A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.12:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "67B0A2B6-C560-4AE0-BC79-3C7BC9163EE0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.13:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "566406CE-368A-4799-A112-E5DFC5B333D7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.14:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E5CCC734-C15B-4D2B-BF83-F214F807C44E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.15:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "64796893-A90D-4B7D-BDBC-0087B57AF7E5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.16:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "39914C6A-F4DB-43CC-B2B6-097365E55D34"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.17:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5BFDD8F7-AAFD-453F-99A4-F9C0424EA791"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.18:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0BFEEAA6-0B50-4644-A183-F5FEE7BD7EEC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.19:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "920FC1DB-95E2-4367-BF20-77D75BD7617D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.20:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "28E643F8-005A-4170-8275-8E4AB5C25209"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.21:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C8A34C63-C17D-4026-B409-AA9A56529B87"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.22:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "4EA863B0-A6AB-44BD-84E8-B6C885EFFE10"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.23:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "24BFAEC7-6256-4B8F-83F5-60FBD1571936"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.25:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "734B8101-BEAC-40AB-81EA-2516CA20BC93"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.0.27:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AA73658A-8834-4EC2-8D8F-3A7D1C834669"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "4B298BAA-5584-4193-A3DB-31FBB0BD12B2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.10:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7951BAAB-CB06-4F19-891A-E07E2B3C8701"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.11:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "82EC30A1-4150-44DC-89F7-5A64B8CC4A84"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.12:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "9DF04D97-A561-427B-9891-A1423B86F164"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.13:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1E74B0C8-2D64-4BF2-B152-87909E3029EB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.14:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "88F6CA0B-ED91-4085-8EE0-1F4256747621"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.15:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B90657E7-D651-4E1E-8035-13A1F024E3C2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.16:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7BBE5477-BE27-412A-9BA9-9690F746B4F4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.17:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "31300FA3-C57D-4564-927E-B06C0229BE8B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.18:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "342E414D-8ED6-4E5A-88F0-57B5846A3EB8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1.19:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7C0BD0FD-BD80-4197-8479-BBB070DAB890"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:openldap:openldap:2.1_.20:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E8BCFC49-6505-4713-A06C-A64782A34414"
}
]
}
]
} ,
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.2.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AB461678-560D-436E-A3AE-9E1E16DB0412"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.3.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "421079DA-B605-4E05-9454-C30CF7631CF4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.3.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "93B734BA-3435-40A9-B22B-5D56CEB865A7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.2.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "38F17066-C090-4DD7-A1AC-D8FF70D268CE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.3.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3CA6BD2A-3022-408D-8E4F-50865996E965"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.3.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "463D5628-7536-4029-99D6-5E525050059E"
}
]
}
]
}
] ,
"references" : [
2024-04-04 08:46:00 +00:00
{
"url" : "http://secunia.com/advisories/12491/" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://secunia.com/advisories/17233" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://secunia.com/advisories/21520" ,
"source" : "cve@mitre.org"
} ,
2023-04-24 12:24:31 +02:00
{
"url" : "http://support.avaya.com/elmodocs2/security/ASA-2006-157.htm" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.auscert.org.au/render.html?it=4363" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://www.redhat.com/support/errata/RHSA-2005-751.html" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.securityfocus.com/advisories/7148" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://www.securityfocus.com/bid/11137" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/17300" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10703" ,
"source" : "cve@mitre.org"
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "http://secunia.com/advisories/12491/" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://secunia.com/advisories/17233" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://secunia.com/advisories/21520" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://support.avaya.com/elmodocs2/security/ASA-2006-157.htm" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.auscert.org.au/render.html?it=4363" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://www.redhat.com/support/errata/RHSA-2005-751.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.securityfocus.com/advisories/7148" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://www.securityfocus.com/bid/11137" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/17300" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10703" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2023-04-24 12:24:31 +02:00
}
]
}