Vulnerabilities > CVE-2008-1665 - Remote Unauthorized Access vulnerability in HP Select Identity Bidrectional LDAP Connector

047910
CVSS 9.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
SINGLE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
hp
critical

Summary

Multiple unspecified vulnerabilities in HP Select Identity (HPSI) Active Directory Bidirectional LDAP Connector 2.20, 2.20.001, 2.20.002, and 2.30 allow remote attackers to execute arbitrary code via unspecified vectors.

Seebug

bulletinFamilyexploit
descriptionBUGTRAQ ID: 30250 CVE ID:CVE-2008-1665 CNCVE ID:CNCVE-20081665 HP Select Identity是一款身份认证管理应用解决方案。 HP Select Identity Bidrectional LDAP Connector存在一个未明未授权访问漏洞,远程攻击者可以利用漏洞未授权访问目标应用系统。 目前没有详细漏洞细节提供。 HP HPSI Active Directory Bidirectional LDAP Connector 2.20.2 HP HPSI Active Directory Bidirectional LDAP Connector 2.20.1 HP HPSI Active Directory Bidirectional LDAP Connector 2.30 HP HPSI Active Directory Bidirectional LDAP Connector 2.20 可参考如下补丁: <a href=http://support.openview.hp.com/selfsolve/patches target=_blank>http://support.openview.hp.com/selfsolve/patches</a> HPSI Active Directory Bidirectional LDAP Connector Software Version - v 2.20 Operating System - Windows Patch - BiDir ActiveDir Connector 2.30 p1 HPSI Active Directory Bidirectional LDAP Connector Software Version - v 2.20.001 Operating System - Windows Patch - BiDir ActiveDir Connector 2.30 p1 HPSI Active Directory Bidirectional LDAP Connector Software Version - v 2.20.002 Operating System - Windows Patch - BiDir ActiveDir Connector 2.30 p1 HPSI Active Directory Bidirectional LDAP Connector Software Version - v 2.30 Operating System - Windows Patch - BiDir ActiveDir Connector 2.30 p1
idSSV:3669
last seen2017-11-19
modified2008-07-17
published2008-07-17
reporterRoot
titleHP Select Identity Bidrectional LDAP Connector远程未授权访问漏洞