Files
CVEs-PoC/2007/CVE-2007-3193.md
T
2025-09-29 21:09:30 +02:00

795 B

CVE-2007-3193

Description

lib/WikiUser/LDAP.php in PhpWiki before 1.3.13p1, when the configuration lacks a nonzero PASSWORD_LENGTH_MINIMUM, might allow remote attackers to bypass authentication via an empty password, which causes ldap_bind to return true when used with certain LDAP implementations.

POC

Reference

Github

No PoCs found on GitHub currently.