Unrated severityNVD Advisory· Published Oct 20, 2000· Updated Apr 16, 2026
CVE-2000-0748
CVE-2000-0748
Description
OpenLDAP 1.2.11 and earlier improperly installs the ud binary with group write permissions, which could allow any user in that group to replace the binary with a Trojan horse.
Affected products
5cpe:2.3:a:openldap:openldap:1.2.10:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:openldap:openldap:1.2.10:*:*:*:*:*:*:*
- cpe:2.3:a:openldap:openldap:1.2.11:*:*:*:*:*:*:*
- cpe:2.3:a:openldap:openldap:1.2.7:*:*:*:*:*:*:*
- cpe:2.3:a:openldap:openldap:1.2.8:*:*:*:*:*:*:*
- cpe:2.3:a:openldap:openldap:1.2.9:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- archives.neohapsis.com/archives/bugtraq/2000-07/0375.htmlnvdPatchVendor Advisory
- www.securityfocus.com/bid/1511nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.