LDAP Entry Poisoning Vulnerability in Atlassian Crowd

LDAP Entry Poisoning Vulnerability in Atlassian Crowd

CVE-2016-6496 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

The LDAP directory connector in Atlassian Crowd before 2.8.8 and 2.9.x before 2.9.5 allows remote attackers to execute arbitrary code via an LDAP attribute with a crafted serialized Java object, aka LDAP entry poisoning.

Learn more about our Web Application Penetration Testing UK.