HarborGuard / CVE
Back to search
HIGHCVE-2026-44052Published Modified CNA securin

CVE-2026-44052: LDAP simple-bind password exposure in log output

Netatalk 2.1.0 through 4.4.2 inserts LDAP simple-bind passwords into log output in cleartext, which allows an attacker with access to the log files to obtain LDAP credentials.

Metrics

CVSS v3.1
7.5
Severity
HIGH
Fixed in
4.4.3
Affected Products
1

Fix available

4.4.3
Affected packages
  • Netatalk / Netatalk
    ≤ 4.4.2
    Fixed in 4.4.3
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N