CVE-2023-3447: Active Directory Integration / LDAP Integration <= 4.1.5 - Authenticated (Subscriber+) LDAP Injection
The Active Directory Integration / LDAP Integration plugin for WordPress is vulnerable to LDAP Injection in versions up to, and including, 4.1.5. This is due to insufficient escaping on the supplied username value. This makes it possible for attackers, with an existing account on a vulnerable WordPress instance, to extract potentially sensitive information from the LDAP directory.
Other sources
The Active Directory Integration / LDAP Integration plugin for WordPress is vulnerable to LDAP Injection in versions up to, and including, 4.1.5. This is due to insufficient escaping on the supplied username value. This makes it possible for unauthenticated attackers to extract potentially sensitive information from the LDAP directory.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
wordpress/Active Directory Integration / LDAP Integrationto a version that resolves this vulnerability.Fixed in 4.1.5
Event History
Frequently Asked Questions
What is CVE-2023-3447?
CVE-2023-3447 is a vulnerability in the Active Directory Integration / LDAP Integration plugin for WordPress that allows for LDAP Injection due to insufficient escaping on the supplied username value.
What is the severity of CVE-2023-3447?
CVE-2023-3447 has a severity rating of 7.5 (High).
How does CVE-2023-3447 affect the Active Directory Integration / LDAP Integration plugin?
CVE-2023-3447 affects versions up to and including 4.1.5 of the Active Directory Integration / LDAP Integration plugin for WordPress.
How can unauthenticated attackers exploit CVE-2023-3447?
Unauthenticated attackers can exploit CVE-2023-3447 by using LDAP Injection to potentially extract sensitive information.
Are there any references for CVE-2023-3447?
Yes, you can find more information about CVE-2023-3447 at the following references: [Reference 1](https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=2928150%40ldap-login-for-intranet-sites&new=2928150%40ldap-login-for-intranet-sites&sfp_email=&sfph_mail=) and [Reference 2](https://www.wordfence.com/threat-intel/vulnerabilities/id/cd7553e8-e43d-4740-b2ee-e3d8dc351e53?source=cve).