CVE-2023-44038: Veridiumid Veridiumad
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
In VeridiumID before 3.5.0, the identity provider page allows an unauthenticated attacker to discover information about registered users via an LDAP injection attack.
Affected products
- Veridiumid Veridiumad: before 3.5.0 (fixed in 3.5.0)
Published 2024-04-03. Last modified 2026-06-17.