Vulnerabilities > CVE-2022-0143 - Incorrect Authorization vulnerability in Forgerock Ldap Connector
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
When the LDAP connector is started with StartTLS configured, unauthenticated access is granted. This issue affects: all versions of the LDAP connector prior to 1.5.20.9. The LDAP connector is bundled with Identity Management (IDM) and Remote Connector Server (RCS)
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |