Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
CVE-2026-102156 has been fixed in the following releases: - 2026.2.1 and later releases
Vendor Workaround
The recommended mitigation is to disable LDAP Authentication. Prior to implementing this, please ensure that an alternative authentication mechanism is properly configured and verified, as disabling LDAP authentication will prevent LDAP-dependent users from accessing or managing CV-CUE.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 06 Oct 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper neutralization of Lightweight Directory Access Protocol (LDAP) authentication input may allow an unauthenticated network attacker, under high-complexity conditions, to inject queries against the configured directory service. | |
| Title | Security Advisory 0191 | |
| Weaknesses | CWE-74 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Arista
Published:
Updated: 2026-10-06T20:04:33.983Z
Reserved: 2026-09-28T17:41:09.358Z
Link: CVE-2026-102156
No data.
Status : Received
Published: 2026-10-06T20:17:10.547
Modified: 2026-10-06T20:17:10.547
Link: CVE-2026-102156
No data.
OpenCVE Enrichment
No data.