CVE-2012-2746

Publication date

2012-07-03 16:00:00

Family

redhat

State

PUBLISHED

Description

389 Directory Server before 1.2.11.6 (aka Red Hat Directory Server before 8.2.10-3), when the password of a LDAP user has been changed and audit logging is enabled, saves the new password to the log in plain text, which allows remote authenticated users to read the password.