Описание
phpldapadmin before 0.9.6c allows remote attackers to gain anonymous access to the LDAP server, even when disable_anon_bind is set, via an HTTP request to login.php with the anonymous_bind parameter set.
Ссылки
- Third Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.9.6c (исключая)
cpe:2.3:a:phpldapadmin_project:phpldapadmin:*:*:*:*:*:*:*:*
EPSS
Процентиль: 73%
0.00769
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
ubuntu
около 20 лет назад
phpldapadmin before 0.9.6c allows remote attackers to gain anonymous access to the LDAP server, even when disable_anon_bind is set, via an HTTP request to login.php with the anonymous_bind parameter set.
debian
около 20 лет назад
phpldapadmin before 0.9.6c allows remote attackers to gain anonymous a ...
github
больше 3 лет назад
phpldapadmin before 0.9.6c allows remote attackers to gain anonymous access to the LDAP server, even when disable_anon_bind is set, via an HTTP request to login.php with the anonymous_bind parameter set.
EPSS
Процентиль: 73%
0.00769
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-noinfo