Количество 2
Количество 2
CVE-2024-21671
The vantage6 technology enables to manage and deploy privacy enhancing technologies like Federated Learning (FL) and Multi-Party Computation (MPC). It is possible to find out usernames from the response time of login requests. This could aid attackers in credential attacks. Version 4.2.0 patches this vulnerability.
GHSA-45gq-q4xh-cp53
vantage6 vulnerable to username timing attack
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-21671 The vantage6 technology enables to manage and deploy privacy enhancing technologies like Federated Learning (FL) and Multi-Party Computation (MPC). It is possible to find out usernames from the response time of login requests. This could aid attackers in credential attacks. Version 4.2.0 patches this vulnerability. | CVSS3: 3.7 | 0% Низкий | около 2 лет назад | |
GHSA-45gq-q4xh-cp53 vantage6 vulnerable to username timing attack | CVSS3: 3.7 | 0% Низкий | около 2 лет назад |
Уязвимостей на страницу