An issue was discovered in MCUBO ICT through 10.12.4 (aka 6.0.2). An Observable Response Discrepancy can occur under the login web page. In particular, the web application provides different responses to incoming requests in a way that reveals internal state information to an unauthorized actor. That allow an unauthorized actor to perform User Enumeration attacks.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-03-28T00:00:00
Updated: 2024-08-02T11:39:06.538Z
Reserved: 2023-02-19T00:00:00
Link: CVE-2023-26071
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-03-28T20:15:13.343
Modified: 2024-11-21T07:50:43.147
Link: CVE-2023-26071
Redhat
No data.