Total vulnerabilities in the database
CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.
Software | From | Fixed in |
---|---|---|
cisco / secure_access_control_server | 2.1 | 2.1.x |
cisco / secure_access_control_server | 2.3(3) | 2.3(3).x |
cisco / secure_access_control_server | 2.4(2) | 2.4(2).x |