Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
phpldapadmin before 0.9.6c allows remote attackers to gain anonymous access to the LDAP server, even when disable_anon_bind is set, via an HTTP request to login.php with the anonymous_bind parameter set.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
phpLDAPadmin 访问控制错误漏洞
Vulnerability Description
phpLDAPadmin是一款基于Web的LDAP客户端,它主要用于管理LDAP服务器。 phpldapadmin中存在访问控制错误漏洞,攻击者可以利用这个漏洞匿名访问LDAP服务器,即使配置中已有disable_anon_bind禁止匿名访问。起因是在允许访问LDAP管理函数之前没有正确的验证用户凭据。
CVSS Information
N/A
Vulnerability Type
N/A