In SecurityCenter versions prior to 5.7.0, a username enumeration issue could allow an unauthenticated attacker to automate the discovery of username aliases via brute force, ultimately facilitating …
High CVSS 8.8
Summary
In SecurityCenter versions prior to 5.7.0, a username enumeration issue could allow an unauthenticated attacker to automate the discovery of username aliases via brute force, ultimately facilitating unauthorized access. Server response output has been unified to correct this issue.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- http://www.securitytracker.com/id/1041431 Third Party Advisory
- https://www.tenable.com/security/tns-2018-11 Patch
- http://www.securitytracker.com/id/1041431 Third Party Advisory
- https://www.tenable.com/security/tns-2018-11 Patch
Timeline
- nvd_ingest NVD