An issue in the login and reset password functionality of Backdrop CMS v1.22.0 allows attackers to enumerate usernames via password reset requests and distinct responses returned based on usernames.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-37483 | An issue in the login and reset password functionality of Backdrop CMS v1.22.0 allows attackers to enumerate usernames via password reset requests and distinct responses returned based on usernames. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T09:15:15.261Z
Reserved: 2022-06-26T00:00:00
Link: CVE-2022-34530
No data.
Status : Modified
Published: 2022-08-01T20:15:08.810
Modified: 2024-11-21T07:09:42.820
Link: CVE-2022-34530
No data.
OpenCVE Enrichment
No data.
EUVD