Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-58q7-hv66-qf24

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.3

Описание

Skybox Manager Client Application is prone to information disclosure via a username enumeration attack. A local unauthenticated attacker could exploit the flaw to obtain valid usernames, by analyzing error messages upon valid and invalid account login attempts.

Skybox Manager Client Application is prone to information disclosure via a username enumeration attack. A local unauthenticated attacker could exploit the flaw to obtain valid usernames, by analyzing error messages upon valid and invalid account login attempts.

EPSS

Процентиль: 49%
0.00262
Низкий

3.3 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 3.3
nvd
больше 8 лет назад

Skybox Manager Client Application is prone to information disclosure via a username enumeration attack. A local unauthenticated attacker could exploit the flaw to obtain valid usernames, by analyzing error messages upon valid and invalid account login attempts.

EPSS

Процентиль: 49%
0.00262
Низкий

3.3 Low

CVSS3

Дефекты

CWE-200