PT-2023-11480 · Unknown · Ucs@School

·

CVE-2020-17477

·

Published

2023-10-26

·

Updated

2023-11-16

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions UCS@school versions prior to 4.4v5-errata
Description The issue is related to incorrect LDAP ACLs in ucs-school-ldap-acls-master, allowing remote teachers, staff, and school administrators to read LDAP password hashes, including sambaNTPassword, krb5Key, sambaPasswordHistory, and pwhistory, via LDAP search requests. This could enable a teacher to gain administrator access via an NTLM hash.
Recommendations For versions prior to 4.4v5-errata, update to version 4.4v5-errata or later to resolve the issue. As a temporary workaround, consider restricting access to the LDAP search requests to minimize the risk of exploitation.

Fix

Insufficiently Protected Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-17477

Affected Products

Ucs@School