CVE-2007-5797

CVE-2007-5797

CVE-2007-5797 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

SQLLoginModule in Apache Geronimo 2.0 through 2.1 does not throw an exception for a nonexistent username, which allows remote attackers to bypass authentication via a login attempt with any username not contained in the database.

Learn more about our Cis Benchmark Audit For Apache Http Server.