Vulnerabilities > Redhat > 389 Directory Server > 1.3.7.10

DATE CVE VULNERABILITY TITLE RISK
2021-03-26 CVE-2020-35518 Information Exposure Through Discrepancy vulnerability in Redhat 389 Directory Server
When binding against a DN during authentication, the reply from 389-ds-base will be different whether the DN exists or not.
network
low complexity
redhat CWE-203
5.0
2018-09-11 CVE-2018-10935 Improper Input Validation vulnerability in Redhat 389 Directory Server
A flaw was found in the 389 Directory Server that allows users to cause a crash in the LDAP server using ldapsearch with server side sort.
network
low complexity
redhat CWE-20
4.0