Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-25495

A valid, authenticated administrative user can query a web interface API to reveal the configured LDAP client password used by XCC to authenticate to an external LDAP server in certain configurations. There is no exposure where no LDAP client password is configured
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 21.6%
CVSS Severity
CVSS v3 Score 4.9
Products affected by CVE-2023-25495


Contact Us

Shodan ® - All rights reserved