CVE-2014-6232: Medium severity openldap vulnerability
Published Sep 11, 2014
·Updated
Unspecified vulnerability in the LDAP (euldap) extension before 2.8.18 for TYPO3 allows remote authenticated users to obtain sensitive information via unknown vectors.
Affected Software
1 affected component
Ldap Project Ldap Typo3<=2.8.17
Remediation
Patch Available
Event History
Sep 11, 2014
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-6232?
CVE-2014-6232 has a medium severity rating as it allows remote authenticated users to access sensitive information.
2
How do I fix CVE-2014-6232?
To fix CVE-2014-6232, update the LDAP (eu_ldap) extension to version 2.8.18 or later.
3
Who is affected by CVE-2014-6232?
CVE-2014-6232 affects installations of TYPO3 using the LDAP (eu_ldap) extension version 2.8.17 and earlier.
4
What type of vulnerability is CVE-2014-6232?
CVE-2014-6232 is an information disclosure vulnerability that can be exploited by remote authenticated users.
5
Can CVE-2014-6232 be exploited remotely?
Yes, CVE-2014-6232 can be exploited by remote authenticated users to obtain sensitive information.