CVE-2026-10549
Vulnerability Description
LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass group membership checks resulting in unauthorized access to the database.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-280
Source
NVD
Vendor
Yandex
Product
Yandex Database
Discussion (0)
Add Comment
No comments yet. Be the first!