CVE-2024-10127

9.8CRITICAL

Authentication bypass condition in LDAP authentication in M-Files server versions before 24.11 supported usage of OpenLDAP configurations that allowed user authentication without a password when the L

发布于: 11/20/2024更新于: 10/29/2025

描述

Authentication bypass condition in LDAP authentication in M-Files server versions before 24.11 supported usage of OpenLDAP configurations that allowed user authentication without a password when the LDAP server itself had the vulnerable configuration.

AI分析AI驱动

受影响产品

m-filesm-files_server
m-filesm-files_server

参考资料