Ltb-project

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 3
    Known Exploited: 0
    2
    Critical Level Threats
    1
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-53958

    LDAP Tool Box Self Service Password 1.5.2 Account Takeover via HTTP Host Header

    Last Modified: Aug 14, 2026
    Published: Dec 19, 2025

    CVE-2023-49032

    An issue in LTB Self Service Password before v.1.5.4 allows a remote attacker to execute arbitrary code and obtain sensitive information via hijack of the SMS verification code function to arbitrary phone.

    Last Modified: Apr 24, 2025
    Published: Dec 20, 2023

    CVE-2018-12421

    LTB (aka LDAP Tool Box) Self Service Password before 1.3 allows a change to a user password (without knowing the old password) via a crafted POST request, because the ldap_bind return value is mishandled and the PHP data type is not constrained to be a string.

    Last Modified: Nov 21, 2024
    Published: Jun 14, 2018
    Items Per Page