CVE-2010-1596

EUVD-2010-1622
Support Incident Tracker before 3.51, when using LDAP authentication with anonymous binds, allows remote attackers to bypass authentication via an empty password.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 62%
Affected Products (NVD)
VendorProductVersion
sitrackersupport_incident_tracker
𝑥
≤ 3.50
sitrackersupport_incident_tracker
3.21
sitrackersupport_incident_tracker
3.22
sitrackersupport_incident_tracker
3.22pl1:pl1
sitrackersupport_incident_tracker
3.23
sitrackersupport_incident_tracker
3.24
sitrackersupport_incident_tracker
3.24:beta-2
sitrackersupport_incident_tracker
3.30
sitrackersupport_incident_tracker
3.30:beta2
sitrackersupport_incident_tracker
3.31
sitrackersupport_incident_tracker
3.32
sitrackersupport_incident_tracker
3.33
sitrackersupport_incident_tracker
3.35
sitrackersupport_incident_tracker
3.35:beta1
sitrackersupport_incident_tracker
3.36
sitrackersupport_incident_tracker
3.40
sitrackersupport_incident_tracker
3.40:beta1
sitrackersupport_incident_tracker
3.41
sitrackersupport_incident_tracker
3.45
sitrackersupport_incident_tracker
3.45:beta1
sitrackersupport_incident_tracker
3.50:beta1
𝑥
= Vulnerable software versions