CVE-2020-9389
03.02.2021, 20:15
A username enumeration issue was discovered in SquaredUp before version 4.6.0. The login functionality was implemented in a way that would enable a malicious user to guess valid username due to a different response time from invalid usernames.Enginsight
Vendor | Product | Version |
---|---|---|
squaredup | squaredup | 𝑥 ≤ 4.6 |
𝑥
= Vulnerable software versions
References