CVE-2025-40806
EUVD-2025-20192709.12.2025, 16:17
A vulnerability has been identified in Gridscale X Prepay (All versions < V4.2.1). The affected application is vulnerable to user enumeration due to distinguishable responses. This could allow an unauthenticated remote attacker to determine if a user is valid or not, enabling a brute force attack with valid users.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| siemens | gridscale_x_prepay | 𝑥 < 4.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration