NVD

Id
81866  
Name
CVE-2016-6500  
Description
Unspecified methods in the RACF Connector component before 1.1.1.0 in ForgeRock OpenIDM and OpenICF improperly call the SearchControls constructor with returnObjFlag set to true, which allows remote attackers to execute arbitrary code via a crafted serialized Java object, aka LDAP entry poisoning.  
Reject
 
CVSS Version
 
CVSS Score
 
Severity
 
CVSS Base Score
 
CVSS Impact Subscore
 
CVSS Exploit Subscore
 
CVSS Vector
 
Pub Date
2017-02-08  
Published
2017-02-03  
Modified Date
2017-02-03  
Seq
2016-6500  

Actions