Description
An LDAP Injection vulnerability exists in the LdapIdentityBackend of Apache Kerby before 2.0.3.
Remediation
References
https://lists.apache.org/thread/ynz3hhbbq6d980fzpncwbh5jd8mkyt5y
Related Vulnerabilities
CVE-2021-39154 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2022-33891 Vulnerability in maven package org.apache.spark:spark-core_2.13
CVE-2016-6793 Vulnerability in maven package org.apache.wicket:wicket-util
CVE-2022-36909 Vulnerability in maven package org.jenkins-ci.plugins:openshift-deployer
CVE-2022-2048 Vulnerability in maven package org.eclipse.jetty.http2:http2-server