LDAP Bind Credentials Exposure in KACE Systems Deployment Appliances
CVE-2023-33254
6.5MEDIUM
What is CVE-2023-33254?
A vulnerability exists in KACE Systems Deployment and Remote Site appliances where LDAP bind credentials can be exposed. This occurs when an authenticated user modifies user-authentication settings to redirect LDAP requests to a malicious server. By testing these settings, cleartext credentials may be captured, potentially granting elevated privileges within the Active Directory domain. Properly securing LDAP configurations and monitoring authentication attempts are crucial to mitigating risks associated with this vulnerability.