← back
CVE-2024-12510mediumCWE-287

LDAP Authentication Sever Pass-back attack

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 6.7epss 0.9%
exploitation probability
0.9%top 42% of all CVEs
observed exploitation
nono source reports it
If LDAP settings are accessed, authentication could be redirected to another server, potentially exposing credentials. This requires admin access and an active LDAP setup.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L