CVE-2011-1025
bind.cpp in back-ndb in OpenLDAP 2.4.x before 2.4.24 does not require authentication for the root Distinguished Name (DN
bind.cpp in back-ndb in OpenLDAP 2.4.x before 2.4.24 does not require authentication for the root Distinguished Name (DN), which allows remote attackers to bypass intended access restrictions via an arbitrary password.
MEDIUM · CVSS 6.8
EPSS 0.0728
Monitor
- EPSS percentile: top 8% of all CVEs by exploitation likelihood
Sigma rules0
YARA rules0