CVE-2014-8763
22.10.2014, 14:55
DokuWiki before 2014-05-05b, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentication via a password starting with a null (\0) character and a valid user name, which triggers an unauthenticated bind.Enginsight
| Vendor | Product | Version |
|---|---|---|
| dokuwiki | dokuwiki | 𝑥 ≤ 2014-05-05a |
| mageia_project | mageia | 3.0 |
| mageia_project | mageia | 4.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References