Looking for the vulnerability index of Invicti's legacy products?
Dotclear Improper Authentication Vulnerability (CVE-2014-3781) - Vulnerability Database

Dotclear Improper Authentication Vulnerability (CVE-2014-3781)

Description

The dcXmlRpc::setUser method in nc/core/class.dc.xmlrpc.php in Dotclear before 2.6.3 allows remote attackers to bypass authentication via an empty password in an XML-RPC request.

References

Related Vulnerabilities