Количество 2
Количество 2
CVE-2022-40084
больше 3 лет назад
OpenCRX before v5.2.2 was discovered to be vulnerable to password enumeration due to the difference in error messages received during a password reset which could enable an attacker to determine if a username, email or ID is valid.
CVSS3: 5.3
EPSS: Низкий
GHSA-j5v3-363p-g843
больше 3 лет назад
OpenCRX vulnerable to password enumeration via error messages in password reset
CVSS3: 5.3
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-40084 OpenCRX before v5.2.2 was discovered to be vulnerable to password enumeration due to the difference in error messages received during a password reset which could enable an attacker to determine if a username, email or ID is valid. | CVSS3: 5.3 | 0% Низкий | больше 3 лет назад | |
GHSA-j5v3-363p-g843 OpenCRX vulnerable to password enumeration via error messages in password reset | CVSS3: 5.3 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20