Security Advisory

CVE-2019-20902

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-10-01 01:30:19
Last updated 2024-09-17 01:31:07
Assigner atlassian
CVSS score not scored
State PUBLISHED

Description

Upgrading Crowd via XML Data Transfer can reactivate a disabled user from OpenLDAP. The affected versions are from before version 3.4.6 and from 3.5.0 before 3.5.1.