CVE-2022-34530
01.08.2022, 20:15
An issue in the login and reset password functionality of Backdrop CMS v1.22.0 allows attackers to enumerate usernames via password reset requests and distinct responses returned based on usernames.Enginsight
Vendor | Product | Version |
---|---|---|
backdropcms | backdrop_cms | 𝑥 ≤ 1.22.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration