A malicious authenticated SMG administrator user can...
Moderate severity
Unreviewed
Published
Jun 25, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Jun 24, 2022
Published to the GitHub Advisory Database
Jun 25, 2022
Last updated
Jan 27, 2023
A malicious authenticated SMG administrator user can obtain passwords for external LDAP/Active Directory servers that they might not otherwise be authorized to access.
References