cbcvebase.
CVE-2000-1056
published 2000-12-11

CVE-2000-1056: CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.

high7.5CVSS 3.1
AVNACLAuNCPIPAP
CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.

Affected

3 ranges
VendorProductVersion rangeFixed in
ciscosecure_access_control_server
ciscosecure_access_control_server
ciscosecure_access_control_server