Back to CVE List

CVE-2026-10549

Vulnerability Description

LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass group membership checks resulting in unauthorized access to the database.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-280
Source
NVD
Vendor
Yandex
Product
Yandex Database

External References

Discussion (0)

Add Comment

No comments yet. Be the first!