CVE detail
CVE-2002-0045 — CVE-2002-0045
Published 2002-01-31 · Modified 2026-06-16 · Vendor openldap · Product openldap · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0222
EPSS probability
exploitation probability, 30d
81.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
slapd in OpenLDAP 2.0 through 2.0.19 allows local users, and anonymous users before 2.0.8, to conduct a "replace" action on access controls without any values, which causes OpenLDAP to delete non-mandatory attributes that would otherwise be protected by ACLs.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References