Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xmjv-5hmh-hg5p

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

CGI.pl in Bugzilla before 2.14.1, when using LDAP, allows remote attackers to obtain an anonymous bind to the LDAP server via a request that does not include a password, which causes a null password to be sent to the LDAP server.

CGI.pl in Bugzilla before 2.14.1, when using LDAP, allows remote attackers to obtain an anonymous bind to the LDAP server via a request that does not include a password, which causes a null password to be sent to the LDAP server.

EPSS

Процентиль: 82%
0.01839
Низкий

Связанные уязвимости

redhat
больше 23 лет назад

CGI.pl in Bugzilla before 2.14.1, when using LDAP, allows remote attackers to obtain an anonymous bind to the LDAP server via a request that does not include a password, which causes a null password to be sent to the LDAP server.

nvd
больше 23 лет назад

CGI.pl in Bugzilla before 2.14.1, when using LDAP, allows remote attackers to obtain an anonymous bind to the LDAP server via a request that does not include a password, which causes a null password to be sent to the LDAP server.

EPSS

Процентиль: 82%
0.01839
Низкий