CVE-2010-1596

Support Incident Tracker before 3.51, when using LDAP authentication with anonymous binds, allows remote attackers to bypass authentication via an empty password.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 62%
VendorProductVersion
sitrackersupport_incident_tracker
𝑥
≤ 3.50
sitrackersupport_incident_tracker
3.21
sitrackersupport_incident_tracker
3.22
sitrackersupport_incident_tracker
3.22pl1:pl1
sitrackersupport_incident_tracker
3.23
sitrackersupport_incident_tracker
3.24
sitrackersupport_incident_tracker
3.24:beta-2
sitrackersupport_incident_tracker
3.30
sitrackersupport_incident_tracker
3.30:beta2
sitrackersupport_incident_tracker
3.31
sitrackersupport_incident_tracker
3.32
sitrackersupport_incident_tracker
3.33
sitrackersupport_incident_tracker
3.35
sitrackersupport_incident_tracker
3.35:beta1
sitrackersupport_incident_tracker
3.36
sitrackersupport_incident_tracker
3.40
sitrackersupport_incident_tracker
3.40:beta1
sitrackersupport_incident_tracker
3.41
sitrackersupport_incident_tracker
3.45
sitrackersupport_incident_tracker
3.45:beta1
sitrackersupport_incident_tracker
3.50:beta1
𝑥
= Vulnerable software versions