#VU19561 Improper Authorization in OpenLDAP - CVE-2019-13057
Published: July 30, 2019
OpenLDAP
OpenLDAP.org
Description
The vulnerability allows a remote attacker to escalate privileges on the system.
The vulnerability exists due to incorrect processing of rootDN delegation in the OpenLDAP multi-tenant deployments. A database administrator could use this issue to request authorization as an identity from another database, contrary to expectations.