CVE-2009-1293
EUVD-2009-129116.04.2009, 15:12
The web login functionality (c/portal/login) in Novell Teaming 1.0 through SP3 (1.0.3) generates different error messages depending on whether the username is valid or invalid, which makes it easier for remote attackers to enumerate usernames.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| novell | teaming | 1.0 |
| novell | teaming | 1.0:sp1 |
| novell | teaming | 1.0:sp2 |
| novell | teaming | 1.0:sp3 |
| novell | teaming | 1.0.1 |
| novell | teaming | 1.0.2 |
| novell | teaming | 1.0.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References