Vulnerabilities
Vulnerable Software
Mageia Project:  >> Mageia  >> 4.0  Security Vulnerabilities
The resolve_redirects function in sessions.py in requests 2.1.0 through 2.5.3 allows remote attackers to conduct session fixation attacks via a cookie without a host value in a redirect.
CVSS Score
6.8
EPSS Score
0.034
Published
2015-03-18
DokuWiki before 2014-05-05b, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentication via a password starting with a null (\0) character and a valid user name, which triggers an unauthenticated bind.
CVSS Score
5.0
EPSS Score
0.025
Published
2014-10-22
DokuWiki 2014-05-05a and earlier, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentication via a user name and password starting with a null (\0) character, which triggers an anonymous bind.
CVSS Score
5.0
EPSS Score
0.017
Published
2014-10-22


Contact Us

Shodan ® - All rights reserved