VYPR
Unrated severityNVD Advisory· Published Oct 22, 2014· Updated May 6, 2026

CVE-2014-8764

CVE-2014-8764

Description

DokuWiki 2014-05-05a and earlier, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentication via a user name and password starting with a null (\0) character, which triggers an anonymous bind.

Affected products

3
  • cpe:2.3:a:dokuwiki:dokuwiki:*:*:*:*:*:*:*:*
    Range: <=2013-12-08
  • cpe:2.3:o:mageia_project:mageia:3.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:mageia_project:mageia:3.0:*:*:*:*:*:*:*
    • cpe:2.3:o:mageia_project:mageia:4.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.