Vulnerabilities > NET Ldap Project > NET Ldap > 0.3.0

DATE CVE VULNERABILITY TITLE RISK
2019-11-21 CVE-2014-0083 Use of Password Hash With Insufficient Computational Effort vulnerability in multiple products
The Ruby net-ldap gem before 0.11 uses a weak salt when generating SSHA passwords.
local
low complexity
net-ldap-project debian CWE-916
2.1
2017-12-17 CVE-2017-17718 Improper Certificate Validation vulnerability in Net-Ldap Project Net-Ldap
The Net::LDAP (aka net-ldap) gem before 0.16.0 for Ruby has Missing SSL Certificate Validation.
4.3