CVE-2021-44848
EUVD-2021-3165113.12.2021, 02:15
In Cibele Thinfinity VirtualUI before 3.0, /changePassword returns different responses for invalid authentication requests depending on whether the username exists.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cybelesoft | thinfinity_virtualui | 𝑥 < 3.0 |
𝑥
= Vulnerable software versions
References