Beim Anmelden eines Benutzers über einen LDAP-Server wird der Benutzername bei der Übergabe an den Server nicht richtig behandelt, so dass LDAP-Injection möglich ist.
When the user logs in using LDAP, the username is not escaped before being passed to LDAP which could potentially lead to LDAP injection.
Injection-Schwachstellen, wie beispielsweise SQL-, OS- oder LDAP-Injection treten auf, wenn nicht vertrauenswürdige Daten als Teil eines Kommandos oder einer Abfrage von einem Interpreter verarbeitet werden.
Injection flaws, such as SQL, OS, and LDAP injection occur when untrusted data is sent to an interpreter as part of a command or query.
Eigenschaften: Es entdeckt ernste Web-Sicherheitslücken (SQL LDAP injection, XSS CSRF, Bufferüberlauf, usw.), die durch vollautomatische Verfahren entdeckt werden können.
reveals the most serious vulnerabilities (especially those caused by insufficient validation such as SQL injections, XSS/CSRF, buffer overflows, etc.) that can be revealed in fully automated way
Potentially sensitive or inappropriate content
Examples are used only to help you translate the word or expression searched in various contexts. They are not selected or validated by us and can contain inappropriate terms or ideas. Please report examples to be edited or not to be displayed. Potentially sensitive, inappropriate or colloquial translations are usually marked in red or in orange.