CVE-2021-35472

Publication date

2021-07-27 05:32:26

Family

mitre

State

PUBLISHED

Description

An issue was discovered in LemonLDAP::NG before 2.0.12. Session cache corruption can lead to authorization bypass or spoofing. By running a loop that makes many authentication attempts, an attacker might alternately be authenticated as one of two different users.