Описание
WebCalendar 1.0.1 to 1.0.3 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
webcalendar | fixed | 1.0.2-2.2 | package |
EPSS
Процентиль: 67%
0.00558
Низкий
Связанные уязвимости
ubuntu
больше 19 лет назад
WebCalendar 1.0.1 to 1.0.3 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.
nvd
больше 19 лет назад
WebCalendar 1.0.1 to 1.0.3 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.
github
больше 3 лет назад
WebCalendar 1.0.1 to 1.0.3 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.
EPSS
Процентиль: 67%
0.00558
Низкий