Vulnerabilities (CVE)

Filtered by vendor Apereo Subscribe
Filtered by product Central Authentication Service
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-1169 1 Apereo 1 Central Authentication Service 2015-02-11 7.5 HIGH N/A
Apereo Central Authentication Service (CAS) Server before 3.5.3 allows remote attackers to conduct LDAP injection attacks via a crafted username, as demonstrated by using a wildcard and a valid password to bypass LDAP authentication.