CVE-2013-3107

CWE-2643 documents3 sources
Severity
4.3MEDIUM
EPSS
0.3%
top 47.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 1
Latest updateMay 17

Description

VMware vCenter Server 5.1 before Update 1, when anonymous LDAP binding for Active Directory is enabled, allows remote attackers to bypass authentication by providing a valid username in conjunction with an empty password.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-fm49-c4fm-fj64: VMware vCenter Server 52022-05-17
CVEList
CVE-2013-3107: VMware vCenter Server 52013-05-01