CVE-2024-56841: Critical severity mendix vulnerability
Published Jan 14, 2025
·Updated
A vulnerability has been identified in Mendix LDAP (All versions < V1.1.2). Affected versions of the module are vulnerable to LDAP injection. This could allow an unauthenticated remote attacker to bypass username verification.
Affected Software
1 affected component
Mendix LDAP<1.1.2
Event History
Jan 14, 2025
CVE Published
via MITRE·10:30 AM
Data Sourced
via MITRE·10:30 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-56841?
CVE-2024-56841 is considered a high-severity vulnerability due to the potential for unauthenticated remote attacks.
2
How do I fix CVE-2024-56841?
To fix CVE-2024-56841, upgrade your Mendix LDAP module to version 1.1.2 or later.
3
Who is affected by CVE-2024-56841?
All users of Mendix LDAP versions earlier than 1.1.2 are affected by CVE-2024-56841.
4
What type of vulnerability is CVE-2024-56841?
CVE-2024-56841 is an LDAP injection vulnerability that allows bypass of username verification.
5
Can CVE-2024-56841 be exploited remotely?
Yes, CVE-2024-56841 can be exploited remotely by an unauthenticated attacker.