Логотип exploitDog
bind:CVE-2009-2335
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-2335

Количество 5

Количество 5

ubuntu логотип

CVE-2009-2335

почти 16 лет назад

WordPress and WordPress MU before 2.8.1 exhibit different behavior for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

CVSS2: 5
EPSS: Высокий
redhat логотип

CVE-2009-2335

почти 16 лет назад

WordPress and WordPress MU before 2.8.1 exhibit different behavior for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

EPSS: Высокий
nvd логотип

CVE-2009-2335

почти 16 лет назад

WordPress and WordPress MU before 2.8.1 exhibit different behavior for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

CVSS2: 5
EPSS: Высокий
debian логотип

CVE-2009-2335

почти 16 лет назад

WordPress and WordPress MU before 2.8.1 exhibit different behavior for ...

CVSS2: 5
EPSS: Высокий
github логотип

GHSA-4643-w74c-m4wv

около 3 лет назад

WordPress and WordPress MU before 2.8.1 exhibit different behavior for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2009-2335

WordPress and WordPress MU before 2.8.1 exhibit different behavior for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

CVSS2: 5
85%
Высокий
почти 16 лет назад
redhat логотип
CVE-2009-2335

WordPress and WordPress MU before 2.8.1 exhibit different behavior for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

85%
Высокий
почти 16 лет назад
nvd логотип
CVE-2009-2335

WordPress and WordPress MU before 2.8.1 exhibit different behavior for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

CVSS2: 5
85%
Высокий
почти 16 лет назад
debian логотип
CVE-2009-2335

WordPress and WordPress MU before 2.8.1 exhibit different behavior for ...

CVSS2: 5
85%
Высокий
почти 16 лет назад
github логотип
GHSA-4643-w74c-m4wv

WordPress and WordPress MU before 2.8.1 exhibit different behavior for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

85%
Высокий
около 3 лет назад

Уязвимостей на страницу