Thursday, December 17, 2020
CVE-2020-35177
nist.gov
In: nist.gov
HashiCorp Vault and Vault Enterprise allowed the enumeration of users via the LDAP auth method. Fixed in 1.5.6 and 1.6.1. CVE-2020-35177
Copyright © 2020 Cyber Details - Vulnerability Database™
Thanks for everything Templateism - You should have written the code a little more complicated