CVE-2009-1293

The web login functionality (c/portal/login) in Novell Teaming 1.0 through SP3 (1.0.3) generates different error messages depending on whether the username is valid or invalid, which makes it easier for remote attackers to enumerate usernames.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 62%
VendorProductVersion
novellteaming
1.0
novellteaming
1.0:sp1
novellteaming
1.0:sp2
novellteaming
1.0:sp3
novellteaming
1.0.1
novellteaming
1.0.2
novellteaming
1.0.3
𝑥
= Vulnerable software versions