Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ldap Account Manager

First CVE: Apr 3, 2007Active for: 19 yearsTotal CVEs: 16

Ldap Account Manager is a directory-management utility for LDAP systems that operates within a narrow product scope but occupies a specialized administrative role in identity infrastructure. Its vulnerability disclosures cluster around input-handling and validation weaknesses characteristic of web-based administrative tools. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
16
Total CVEs
More Total CVEs than 95% of tracked vendors
2.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 90% of tracked vendors
6.8
Avg CVSS Score
Higher Avg CVSS Score than 44% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Ldap Account Manager over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 3, 2007
19 years ago
Most Recent CVE
Mar 18, 2026
128 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (16 CVEs).

16 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-27894HIGH
LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. Prior to version 9.5, a local file inclusion was d
Mar 18, 20268.830NONO
CVE-2026-27895HIGH
LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. Prior to version 9.5, the PDF export component doe
Mar 18, 20268.828NONO
CVE-2022-31086HIGH
LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 incorrect regular express
Jun 27, 20228.828NONO
CVE-2024-23333MEDIUM
LDAP Account Manager (LAM) is a webfrontend for managing entries stored in an LDAP directory. LAM's log configuration allows to specify arbitrary paths for log files. Prior to vers
Mar 18, 20246.627NONO
CVE-2022-31084HIGH
LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 There are cases where LAM
Jun 27, 20228.127NONO
CVE-2018-8764HIGH
Roland Gruber Softwareentwicklung LDAP Account Manager before 6.3 places a CSRF token in the sec_token parameter of a URI, which makes it easier for remote attackers to defeat a CS
Mar 27, 20188.827NONO
CVE-2022-31087HIGH
LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 the tmp directory, which
Jun 27, 20227.825NONO
CVE-2012-1115MEDIUM
A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the export, add_value_form, and dn parameters to cmd.php.
Dec 5, 20196.122NONO
CVE-2012-1114MEDIUM
A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the filter parameter to cmd.php in an export and exporter_id action. and the filteruid pa
Dec 5, 20196.122NONO
CVE-2018-8763MEDIUM
Roland Gruber Softwareentwicklung LDAP Account Manager before 6.3 has XSS via the dn parameter to the templates/3rdParty/pla/htdocs/cmd.php URI or the template parameter to the tem
Mar 27, 20186.122NONO
View all 16 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products16 CVEs
56%
44%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local1 (6.3%)
Network12 (75.0%)
Unknown3 (18.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low11 (68.8%)
High2 (12.5%)
Unknown3 (18.8%)
User Interaction
None7 (43.8%)
Unknown3 (18.8%)
Required6 (37.5%)
Privileges Required
Low4 (25.0%)
High2 (12.5%)
None7 (43.8%)
Unknown3 (18.8%)

Exploit Exposure

Signals from CVEs in this vendor scope (16 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ldap Account Manager.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ldap Account Manager — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ldap Account Manager's Products

View all 3 CNAs →

Top CWEs