An issue was discovered in Logpoint before 7.4.0. An attacker can enumerate a valid list of usernames by observing the response time at the Forgot Password endpoint.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 18 Apr 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Logpoint
Logpoint siem |
|
| CPEs | cpe:2.3:a:logpoint:siem:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Logpoint
Logpoint siem |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T02:42:58.871Z
Reserved: 2024-04-27T00:00:00
Link: CVE-2024-33856
Updated: 2024-08-02T02:42:58.871Z
Status : Analyzed
Published: 2024-05-07T16:15:08.010
Modified: 2025-04-18T12:39:50.870
Link: CVE-2024-33856
No data.
OpenCVE Enrichment
No data.
Weaknesses