Description
User enumeration vulnerability in Password Recovery plugin 1.2 version for Roundcube, which could allow a remote attacker to create a test script against the password recovery function to enumerate all users in the database.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-43899 | User enumeration vulnerability in Password Recovery plugin 1.2 version for Roundcube, which could allow a remote attacker to create a test script against the password recovery function to enumerate all users in the database. |
References
History
Mon, 30 Sep 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-30T18:47:09.349Z
Reserved: 2023-06-13T15:40:01.925Z
Link: CVE-2023-3221
Updated: 2024-08-02T06:48:07.878Z
Status : Modified
Published: 2023-09-04T13:15:32.853
Modified: 2024-11-21T08:16:43.757
Link: CVE-2023-3221
No data.
OpenCVE Enrichment
No data.
EUVD