Required CVE Record Information
Description
Execution time for an unsuccessful login differs when using a non-existing username compared to using an existing one.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
2.3 | LOW | 4.0 | CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N |
Credits
- Zabbix wants to thank Jens Just Iversen (jensji) for submitting this report on the HackerOne bug bounty platform reporter