CVE-2021-32651
If the LDAP external authentication mechanism is enabled in OneDev versions 4.4.1 and prior, an attacker can manipulate a user search filter to send forged queries to the application and explore the LDAP tree using Blind LDAP Injection techniques.
Does this matter?
Lower severity and a low EPSS score (1.07%). Track it; it rarely justifies an emergency change on its own.
Description
OneDev is a development operations platform. If the LDAP external authentication mechanism is enabled in OneDev versions 4.4.1 and prior, an attacker can manipulate a user search filter to send forged queries to the application and explore the LDAP tree using Blind LDAP Injection techniques. The specific payload depends on how the User Search Filter property is configured in OneDev. This issue was fixed in version 4.4.2.
- CVSS 3.1
- 4.3 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
- EPSS
- 1.07% probability · 63th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-90
- Affected
- onedev project/onedev
- Source
- security-advisories@github.com
References
- https://github.com/theonedev/onedev/commit/4440f0c57e440488d7e653417b2547eaae8ad19cPatch, Third Party Advisory
- https://github.com/theonedev/onedev/security/advisories/GHSA-5864-2496-4xjfExploit, Third Party Advisory
- https://github.com/theonedev/onedev/commit/4440f0c57e440488d7e653417b2547eaae8ad19cPatch, Third Party Advisory
- https://github.com/theonedev/onedev/security/advisories/GHSA-5864-2496-4xjfExploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.