CVE-2002-0007
CGI.pl in Bugzilla before 2.14.1, when using LDAP, allows remote attackers to obtain an anonymous bind to the LDAP serve
CGI.pl in Bugzilla before 2.14.1, when using LDAP, allows remote attackers to obtain an anonymous bind to the LDAP server via a request that does not include a password, which causes a null password to be sent to the LDAP server.
HIGH · CVSS 10
EPSS 0.02206
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0