CVE-2014-8764

DokuWiki <2014-05-05a - Auth Bypass

Title source: llm

Description

DokuWiki 2014-05-05a and earlier, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentication via a user name and password starting with a null (\0) character, which triggers an anonymous bind.

Scores

EPSS 0.0122
EPSS Percentile 78.9%

Classification

CWE
CWE-287
Status draft

Affected Products (3)

mageia_project/mageia
mageia_project/mageia
dokuwiki/dokuwiki < 2013-12-08

Timeline

Published Oct 22, 2014
Tracked Since Feb 18, 2026