http://www.scmagazine.com/mcafee-enterprise-security-manager-failed-to-manage-own-security/article/458406/
"When configured to use Active Directory or LDAP authentication sources, allow remote attackers to bypass authentication by logging in with the username 'NGCP|NGCP|NGCP;' and any password," the advisory read.
:facepalm1:
:facepalm3: