CVE-2018-12689

Publication date

2018-06-22 20:00:00

Family

mitre

State

PUBLISHED

Description

phpLDAPadmin 1.2.2 allows LDAP injection via a crafted server_id parameter in a cmd.php?cmd=login_form request, or a crafted username and password in the login panel.