Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-1769

Опубликовано: 22 мая 2009
Источник: debian
EPSS Низкий

Описание

The web interface in Open Computer and Software Inventory Next Generation (OCS Inventory NG) 1.01 generates different error messages depending on whether a username is valid, which allows remote attackers to enumerate valid usernames.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ocsinventory-serverfixed1.02.1-1package

Примечания

  • README.Debian states Important: access to the reports server should be restricted

EPSS

Процентиль: 67%
0.00545
Низкий

Связанные уязвимости

ubuntu
около 16 лет назад

The web interface in Open Computer and Software Inventory Next Generation (OCS Inventory NG) 1.01 generates different error messages depending on whether a username is valid, which allows remote attackers to enumerate valid usernames.

redhat
около 16 лет назад

The web interface in Open Computer and Software Inventory Next Generation (OCS Inventory NG) 1.01 generates different error messages depending on whether a username is valid, which allows remote attackers to enumerate valid usernames.

nvd
около 16 лет назад

The web interface in Open Computer and Software Inventory Next Generation (OCS Inventory NG) 1.01 generates different error messages depending on whether a username is valid, which allows remote attackers to enumerate valid usernames.

github
больше 3 лет назад

The web interface in Open Computer and Software Inventory Next Generation (OCS Inventory NG) 1.01 generates different error messages depending on whether a username is valid, which allows remote attackers to enumerate valid usernames.

EPSS

Процентиль: 67%
0.00545
Низкий