Логотип exploitDog
bind:CVE-2019-15132
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-15132

Количество 5

Количество 5

ubuntu логотип

CVE-2019-15132

больше 6 лет назад

Zabbix through 4.4.0alpha1 allows User Enumeration. With login requests, it is possible to enumerate application usernames based on the variability of server responses (e.g., the "Login name or password is incorrect" and "No permissions for system access" messages, or just blocking for a number of seconds). This affects both api_jsonrpc.php and index.php.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2019-15132

больше 6 лет назад

Zabbix through 4.4.0alpha1 allows User Enumeration. With login requests, it is possible to enumerate application usernames based on the variability of server responses (e.g., the "Login name or password is incorrect" and "No permissions for system access" messages, or just blocking for a number of seconds). This affects both api_jsonrpc.php and index.php.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2019-15132

больше 6 лет назад

Zabbix through 4.4.0alpha1 allows User Enumeration. With login request ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-8rh3-5c87-wh48

больше 3 лет назад

Zabbix through 4.4.0alpha1 allows User Enumeration. With login requests, it is possible to enumerate application usernames based on the variability of server responses (e.g., the "Login name or password is incorrect" and "No permissions for system access" messages, or just blocking for a number of seconds). This affects both api_jsonrpc.php and index.php.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2023-02341

больше 6 лет назад

Уязвимость реализации сценариев api_jsonrpc.php и index.php универсальной системы мониторинга Zabbix, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-15132

Zabbix through 4.4.0alpha1 allows User Enumeration. With login requests, it is possible to enumerate application usernames based on the variability of server responses (e.g., the "Login name or password is incorrect" and "No permissions for system access" messages, or just blocking for a number of seconds). This affects both api_jsonrpc.php and index.php.

CVSS3: 5.3
0%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-15132

Zabbix through 4.4.0alpha1 allows User Enumeration. With login requests, it is possible to enumerate application usernames based on the variability of server responses (e.g., the "Login name or password is incorrect" and "No permissions for system access" messages, or just blocking for a number of seconds). This affects both api_jsonrpc.php and index.php.

CVSS3: 5.3
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-15132

Zabbix through 4.4.0alpha1 allows User Enumeration. With login request ...

CVSS3: 5.3
0%
Низкий
больше 6 лет назад
github логотип
GHSA-8rh3-5c87-wh48

Zabbix through 4.4.0alpha1 allows User Enumeration. With login requests, it is possible to enumerate application usernames based on the variability of server responses (e.g., the "Login name or password is incorrect" and "No permissions for system access" messages, or just blocking for a number of seconds). This affects both api_jsonrpc.php and index.php.

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2023-02341

Уязвимость реализации сценариев api_jsonrpc.php и index.php универсальной системы мониторинга Zabbix, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.3
0%
Низкий
больше 6 лет назад

Уязвимостей на страницу