B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-49268 - Apache Shiro: LDAP DN Injection in DefaultLdapRealm

CVE ID :CVE-2026-49268 Published : June 17, 2026, 1:07 p.m. | 2 hours, 1 minute ago Description :A remote attacker can inject LDAP special characters into the Distinguished Name (DN) construction in DefaultLdapRealm class. User-supplied username input is directly concatenated into the LDAP DN...

Original-Artikel öffnen Zurück zur Übersicht