CVE-2014-6632

Joomla! <2.5.25-3.3.4 - Auth Bypass

Title source: llm
STIX 2.1

Description

Joomla! 2.5.x before 2.5.25, 3.x before 3.2.4, and 3.3.x before 3.3.4 allows remote attackers to authenticate and bypass intended access restrictions via vectors involving LDAP authentication.

References (3)

Core 3
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/61638
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/61606

Scores

EPSS 0.0005
EPSS Percentile 16.2%

Details

CWE
CWE-287
Status published
Products (32)
joomla/joomla\! 2.5.0
joomla/joomla\! 2.5.1
joomla/joomla\! 2.5.2
joomla/joomla\! 2.5.3
joomla/joomla\! 2.5.4
joomla/joomla\! 2.5.5
joomla/joomla\! 2.5.6
joomla/joomla\! 2.5.7
joomla/joomla\! 2.5.8
joomla/joomla\! 2.5.9
... and 22 more
Published Oct 08, 2014
Tracked Since Feb 18, 2026