VYPR
Medium severity6.5NVD Advisory· Published Feb 19, 2018· Updated Jun 17, 2026

CVE-2016-8750

CVE-2016-8750

Description

Apache Karaf prior to 4.0.8 used the LDAPLoginModule to authenticate users to a directory via LDAP. However, it did not encoding usernames properly and hence was vulnerable to LDAP injection attacks leading to a denial of service.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.apache.karaf:apache-karafMaven
< 4.0.84.0.8

Affected products

2

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.