CVE-2000-0516
Last modified
CVE-2000-0516 is a vulnerability of currently unknown severity. When configured to store configuration information in an LDAP directory, Shiva Access Manager 5.0.0 stores the root DN (Distinguished Name) name and password in cleartext in a file that is world readable, which allows local users to compromise the LDAP server.. EPSS estimates a 0.71% chance of exploitation in the next 30 days.
Description
When configured to store configuration information in an LDAP directory, Shiva Access Manager 5.0.0 stores the root DN (Distinguished Name) name and password in cleartext in a file that is world readable, which allows local users to compromise the LDAP server.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Intel | Shiva Access Manager | 5.0 |
References
- http://archives.neohapsis.com/archives/bugtraq/2000-06/0008.htmlPatch, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2000-06/0008.htmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2000-0516?
How severe is CVE-2000-0516?
How do I fix CVE-2000-0516?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2000
- CVE-2000-0510CUPS (Common Unix Printing System) 1.04 and earlier allows r…
- CVE-2000-0511CUPS (Common Unix Printing System) 1.04 and earlier allows r…
- CVE-2000-0512CUPS (Common Unix Printing System) 1.04 and earlier does not…
- CVE-2000-0513CUPS (Common Unix Printing System) 1.04 and earlier allows r…
- CVE-2000-0514GSSFTP FTP daemon in Kerberos 5 1.1.x does not properly rest…
- CVE-2000-0515The snmpd.conf configuration file for the SNMP daemon (snmpd…
- CVE-2000-0517Netscape 4.73 and earlier does not properly warn users about…
- CVE-2000-0518Internet Explorer 4.x and 5.x does not properly verify all c…
- CVE-2000-0519Internet Explorer 4.x and 5.x does not properly re-validate …
- CVE-2000-0520Buffer overflow in restore program 0.4b17 and earlier in dum…
- CVE-2000-0521Savant web server allows remote attackers to read source cod…
- CVE-2000-0522RSA ACE/Server allows remote attackers to cause a denial of …
Are you affected by CVE-2000-0516?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
