Umanni RH 1.0 has a user enumeration vulnerability. This issue occurs during password recovery, where a difference in messages could allow an attacker to determine if the user is valid or not, enabling a brute force attack with valid users.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-16745 Umanni RH 1.0 has a user enumeration vulnerability. This issue occurs during password recovery, where a difference in messages could allow an attacker to determine if the user is valid or not, enabling a brute force attack with valid users.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T15:05:11.844Z

Reserved: 2020-08-13T00:00:00

Link: CVE-2020-24008

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-08-26T14:15:10.760

Modified: 2024-11-21T05:14:19.290

Link: CVE-2020-24008

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses