VendorsApacheshiro1.2.2
Vulnerabilities

Apache Software Foundation Shiro 1.2.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2014-0074
Apache Shiro 1.x before 1.2.3, when using an LDAP server with unauthenticated bind enabled, allows remote attackers to bypass authentication via an empty (1) username or (2) password.
Published 2014-10-06 · Modified
7.5EPSS 0.055