VYPR
Unrated severityNVD Advisory· Published Oct 20, 2000· Updated Jun 16, 2026

CVE-2000-0748

CVE-2000-0748

Description

OpenLDAP 1.2.11 and earlier improperly installs the ud binary with group write permissions, which could allow any user in that group to replace the binary with a Trojan horse.

Affected products

6
  • OpenLDAP/Openldap6 versions
    cpe:2.3:a:openldap:openldap:1.2.10:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:openldap:openldap:1.2.10:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:1.2.11:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:1.2.7:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:1.2.8:*:*:*:*:*:*:*
    • cpe:2.3:a:openldap:openldap:1.2.9:*:*:*:*:*:*:*
    • (no CPE)range: <=1.2.11

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.