CVE-2023-44038 Information
Apr 04, 2024
cve
Description
In VeridiumID before 3.5.0 the identity provider page allows an unauthenticated attacker to discover information about registered users via an LDAP injection attack.
Reference
https://veridiumid.com/veridium-id-authentication-platform/ https://docs.veridiumid.com/docs/v3.5/security-advisory#id-%28v3.52%29SecurityAdvisory-Acknowledgement
Share on: