Security Advisory

CVE-2025-27231

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-10-03 11:25:14
Last updated 2025-10-03 13:55:51
Assigner Zabbix
CVSS score 4.3
State PUBLISHED

Description

The LDAP 'Bind password' value cannot be read after saving, but a Super Admin account can leak it by changing LDAP 'Host' to a rogue LDAP server. To mitigate this, the 'Bind password' value is now reset on 'Host' change.