CVE-2023-44469
published 2023-09-29CVE-2023-44469: A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::NG before 2.17.1 allows authenticated remote attackers to send GET requests to…
PriorityP425medium4.3CVSS 3.1
AVNACLPRLUINSUCNILAN
EPSS
0.55%
42.6th percentile
A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::NG before 2.17.1 allows authenticated remote attackers to send GET requests to arbitrary URLs through the request_uri authorization parameter. This is similar to CVE-2020-10770.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | lemonldap-ng | < lemonldap-ng 2.16.1+ds-deb12u2 (bookworm) | lemonldap-ng 2.16.1+ds-deb12u2 (bookworm) |
| lemonldap-ng | lemonldap | < 2.17.1 | 2.17.1 |
CVSS provenance
nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
osv5.3MEDIUM
vendor_debian5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fmg2-2hq5-5jxf: A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::NG before 2
ghsa_unreviewed·2023-09-29·CVSS 5.3
CVE-2023-44469 [MEDIUM] CWE-918 GHSA-fmg2-2hq5-5jxf: A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::NG before 2
A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::NG before 2.17.1 allows authenticated remote attackers to send GET requests to arbitrary URLs through the request_uri authorization parameter. This is similar to CVE-2020-10770.
OSV
CVE-2023-44469: A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::NG before 2
osv·2023-09-29·CVSS 5.3
CVE-2023-44469 [MEDIUM] CVE-2023-44469: A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::NG before 2
A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::NG before 2.17.1 allows authenticated remote attackers to send GET requests to arbitrary URLs through the request_uri authorization parameter. This is similar to CVE-2020-10770.
Debian
CVE-2023-44469: lemonldap-ng - A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::N...
vendor_debian·2023·CVSS 5.3
CVE-2023-44469 [MEDIUM] CVE-2023-44469: lemonldap-ng - A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::N...
A Server-Side Request Forgery issue in the OpenID Connect Issuer in LemonLDAP::NG before 2.17.1 allows authenticated remote attackers to send GET requests to arbitrary URLs through the request_uri authorization parameter. This is similar to CVE-2020-10770.
Scope: local
bookworm: resolved (fixed in 2.16.1+ds-deb12u2)
bullseye: resolved (fixed in 2.0.11+ds-4+deb11u5)
forky: resolved (fixed in 2.17.1+ds-1)
sid: resolved (fixed in 2.17.1+ds-1)
trixie: resolved (fixed in 2.17.1+ds-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/issues/2998https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/releases/v2.17.1https://lists.debian.org/debian-lts-announce/2023/10/msg00014.htmlhttps://security.lauritz-holtmann.de/post/sso-security-ssrf/https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/issues/2998https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/releases/v2.17.1https://lists.debian.org/debian-lts-announce/2023/10/msg00014.htmlhttps://security.lauritz-holtmann.de/post/sso-security-ssrf/
2023-09-29
Published