CVE Vulnerabilities

CVE-2000-1056

Published: Dec 11, 2000 | Modified: Oct 10, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.

Affected Software

Name Vendor Start Version End Version
Secure_access_control_server Cisco 2.1 (including) 2.1 (including)
Secure_access_control_server Cisco 2.3(3) (including) 2.3(3) (including)
Secure_access_control_server Cisco 2.4(2) (including) 2.4(2) (including)

References