CVE-2023-49278
12.12.2023, 20:15
Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, and 12.3.4, a brute force exploit can be used to collect valid usernames. Versions 8.18.10, 10.8.1, and 12.3.4 contain a patch for this issue.Enginsight
Vendor | Product | Version |
---|---|---|
umbraco | umbraco_cms | 8.0.0 ≤ 𝑥 < 8.18.10 |
umbraco | umbraco_cms | 10.0.0 ≤ 𝑥 < 10.8.1 |
umbraco | umbraco_cms | 12.0.0 ≤ 𝑥 < 12.3.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration