CVE-2014-8763

DokuWiki <2014-05-05b - Auth Bypass

Title source: llm

Description

DokuWiki before 2014-05-05b, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentication via a password starting with a null (\0) character and a valid user name, which triggers an unauthenticated bind.

Scores

EPSS 0.0105
EPSS Percentile 77.3%

Classification

CWE
CWE-287
Status draft

Affected Products (3)

dokuwiki/dokuwiki < 2014-05-05a
mageia_project/mageia
mageia_project/mageia

Timeline

Published Oct 22, 2014
Tracked Since Feb 18, 2026