A missing/improper authentication vulnerability in the WatchGuard AuthPoint Gateway's LDAP Sync first-factor authentication allows a remote attacker to bypass single-factor password verification under non-default operating conditions. Additional authentication factors still apply.
This vulnerability affects deployments that are configured to sync AuthPoint users from an LDAP source.
WatchGuard is not aware of any exploitation of this vulnerability in the wild.
AuthPoint Authentication Gateway 7.5.1