CVE-2024-51447
13.05.2025, 10:15
A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.2). The login implementation of the affected application contains an observable response discrepancy vulnerability when validating usernames. This could allow an unauthenticated remote attacker to distinguish between valid and invalid usernames.Enginsight
| Vendor | Product | Version |
|---|---|---|
| siemens | polarion_alm | 2404 ≤ 𝑥 < 2410 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration