Vulnerabilities > Ldap Account Manager > High

DATE CVE VULNERABILITY TITLE RISK
2022-06-27 CVE-2022-31084 LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g.
network
high complexity
ldap-account-manager debian
8.1
2022-06-27 CVE-2022-31086 Unrestricted Upload of File with Dangerous Type vulnerability in multiple products
LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g.
network
low complexity
ldap-account-manager debian CWE-434
8.8
2022-06-27 CVE-2022-31087 Incorrect Authorization vulnerability in multiple products
LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g.
local
low complexity
ldap-account-manager debian CWE-863
7.8
2018-03-27 CVE-2018-8764 Cross-Site Request Forgery (CSRF) vulnerability in multiple products
Roland Gruber Softwareentwicklung LDAP Account Manager before 6.3 places a CSRF token in the sec_token parameter of a URI, which makes it easier for remote attackers to defeat a CSRF protection mechanism by leveraging logging.
network
low complexity
debian ldap-account-manager CWE-352
8.8