Описание
AmTote International homebet program returns different error messages when invalid account numbers and PIN codes are provided, which allows remote attackers to determine the existence of valid account numbers via a brute force attack.
Ссылки
- Broken LinkVendor Advisory
- Broken Link
- Broken LinkExploitThird Party AdvisoryVDB Entry
- Broken LinkVendor Advisory
- Broken Link
- Broken LinkExploitThird Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:amtote:homebet:-:*:*:*:*:*:*:*
EPSS
Процентиль: 92%
0.07856
Низкий
5 Medium
CVSS2
Дефекты
CWE-203
Связанные уязвимости
github
больше 3 лет назад
AmTote International homebet program returns different error messages when invalid account numbers and PIN codes are provided, which allows remote attackers to determine the existence of valid account numbers via a brute force attack.
EPSS
Процентиль: 92%
0.07856
Низкий
5 Medium
CVSS2
Дефекты
CWE-203