Description
vantage6 is a privacy preserving federated learning infrastructure for secure insight exchange. vantage6 does not inform the user of wrong username/password combination if the username actually exists. This is an attempt to prevent bots from obtaining usernames. However, if a wrong password is entered a number of times, the user account is blocked temporarily. This issue has been fixed in version 3.8.0.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0260 | vantage6 is a privacy preserving federated learning infrastructure for secure insight exchange. vantage6 does not inform the user of wrong username/password combination if the username actually exists. This is an attempt to prevent bots from obtaining usernames. However, if a wrong password is entered a number of times, the user account is blocked temporarily. This issue has been fixed in version 3.8.0. |
Github GHSA |
GHSA-36gx-9q6h-g429 | vantage6 vulnerable to Observable Response Discrepancy |
References
History
Mon, 10 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-03-07T21:24:48.813Z
Reserved: 2022-09-02T14:16:35.824Z
Link: CVE-2022-39228
Updated: 2024-08-03T12:00:43.305Z
Status : Modified
Published: 2023-03-01T17:15:10.980
Modified: 2024-11-21T07:17:49.883
Link: CVE-2022-39228
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA