github LDAPAccountManager/lam lam_8_0
LAM 8.0 with important security fixes, PHP 8.1 compatibility and new captcha providers

latest releases: 8.9.RC1, 8.8, 8.8.RC1...
2 years ago
  • PHP 8.1 compatibility
  • Extended user account status and locking options
  • Unix: added Gecos to profile editor
  • 389ds: added hints why login failed if account is locked/deactivated/expired
  • Removed Zarafa support (please switch to Kopano)
  • Tree view: display binary data as base64 encoded text
  • Tree view: better support for move operations and ordered attributes
  • LAM Pro:
    • New captcha providers: hCaptcha and Friendly Captcha
    • PPolicy: allow to specify unlock value for "pwdAccountLockedTime"
  • Fixed bugs:
    • Hidden account is displayed (257)
    • Change of RDN failed for OpenLDAP entries
    • Tree view issues with browser auto-completion (176)
    • Unauthenticated Arbitrary Object Instantiation / Unauthenticated Remote Code Execution (GHSA-r387-grjx-qgvw, CVE-2022-31084)
    • Incorrect Default Permissions (GHSA-q8g5-45m4-q95p, CVE-2022-31087)
    • Incorrect Regular Expressions (GHSA-q9pc-x84w-982x, CVE-2022-31086)
    • Unauthenticated LDAP Injection (GHSA-wxf8-9x99-6gp4, CVE-2022-31088)
    • Reflected XSS (Internet Explorer only) (GHSA-6m3q-5c84-6h6j, CVE-2022-31085)

Don't miss a new lam release

NewReleases is sending notifications on new releases.