jca fcc8022549 SECURITY fix for CVE-2014-4668. The LDAP authenticator considered
successful LDAP bindings as a proper authentication, without checking
the length of the user's password.  But the LDAP server configuration
might allow password-less bindings to retrieve public information.
ok naddy@
2014-07-23 20:14:07 +00:00
..
2012-12-12 02:17:40 +00:00
2012-12-12 02:17:40 +00:00