216.73.216.6

CVE-2024-10127

· Published 20/11/2024 09:15 · Modified 21/11/2024 15:15

Labels: CVE-2024-10127 2024-11-20CVE-2024-10127CWE-303[email protected]

Essential information

Published
20/11/2024 09:15
Modified
21/11/2024 15:15
Author
Creator
CISA KEV
No
CWE

Description

Authentication bypass condition in LDAP authentication in M-Files server versions before 24.11 supported usage of OpenLDAP configurations that allowed user authentication without a password when the LDAP server itself had the vulnerable configuration.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References