CVE-2025-35431 - CISA Thorium LDAP injection
CVE ID : CVE-2025-35431
Published : Sept. 17, 2025, 5:15 p.m. | 54 minutes ago
Description : CISA Thorium does not escape user controlled strings used in LDAP queries. An authenticated remote attacker can modify LDAP authorization data such as group memberships. Fixed in 1.1.1.
Severity: 5.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 17, 2025, 5:15 p.m. | 54 minutes ago
Description : CISA Thorium does not escape user controlled strings used in LDAP queries. An authenticated remote attacker can modify LDAP authorization data such as group memberships. Fixed in 1.1.1.
Severity: 5.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...