Логотип exploitDog
bind:CVE-2009-2336
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-2336

Количество 5

Количество 5

ubuntu логотип

CVE-2009-2336

почти 16 лет назад

The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2009-2336

почти 16 лет назад

The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

EPSS: Низкий
nvd логотип

CVE-2009-2336

почти 16 лет назад

The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2009-2336

почти 16 лет назад

The forgotten mail interface in WordPress and WordPress MU before 2.8. ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-4cc8-gf3c-3mrc

около 3 лет назад

The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2009-2336

The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

CVSS2: 5
2%
Низкий
почти 16 лет назад
redhat логотип
CVE-2009-2336

The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

2%
Низкий
почти 16 лет назад
nvd логотип
CVE-2009-2336

The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

CVSS2: 5
2%
Низкий
почти 16 лет назад
debian логотип
CVE-2009-2336

The forgotten mail interface in WordPress and WordPress MU before 2.8. ...

CVSS2: 5
2%
Низкий
почти 16 лет назад
github логотип
GHSA-4cc8-gf3c-3mrc

The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."

2%
Низкий
около 3 лет назад

Уязвимостей на страницу