Vulnerabilities > Lemonldap NG > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-05-29 CVE-2019-19791 Unspecified vulnerability in Lemonldap-Ng Lemonldap::Ng
In LemonLDAP::NG (aka lemonldap-ng) before 2.0.7, the default Apache HTTP Server configuration does not properly restrict access to SOAP/REST endpoints (when some LemonLDAP::NG setup options are used).
network
low complexity
lemonldap-ng
critical
9.8
2023-03-31 CVE-2023-28862 Improper Authentication vulnerability in Lemonldap-Ng Lemonldap::Ng
An issue was discovered in LemonLDAP::NG before 2.16.1.
network
low complexity
lemonldap-ng CWE-287
critical
9.8