CVEs Blog | G5 Cyber Security

CVE-2014-8764 – DokuWiki 2014-05-05a and earlier, when using Active Directory for LDAP au

DokuWiki 2014-05-05a and earlier, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentication via a user name and password starting with a null ( ) character, which triggers an anonymous bind.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-8764

Reference (s):

Exit mobile version