Loading vulnerability details…
CVSS v3.1
N/A
EPSS
3.79%
Published
Jan 22, 2011
Modified
Apr 28, 2026
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
libuser before 0.57 uses a cleartext password value of (1) !! or (2) x for new LDAP user accounts, which makes it easier for remote attackers to obtain access by specifying one of these values.
Weaknesses (CWE)
Affected Products (104)
References (20)
...and 54 more