CVE-2009-1293
16.04.2009, 15:12
The web login functionality (c/portal/login) in Novell Teaming 1.0 through SP3 (1.0.3) generates different error messages depending on whether the username is valid or invalid, which makes it easier for remote attackers to enumerate usernames.Enginsight
Vendor | Product | Version |
---|---|---|
novell | teaming | 1.0 |
novell | teaming | 1.0:sp1 |
novell | teaming | 1.0:sp2 |
novell | teaming | 1.0:sp3 |
novell | teaming | 1.0.1 |
novell | teaming | 1.0.2 |
novell | teaming | 1.0.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References