CVE-2006-2676

Dispatch.cgi/_user/uservCard/ in SiteScape Forum 7.2 and possibly earlier generates different responses in a way that allows remote attackers to enumerate valid usernames.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sitescape:sitescape_forum:7.2:*:*:*:*:*:*:*

History

21 Nov 2024, 00:11

Type Values Removed Values Added
References () http://secunia.com/advisories/20266 - Vendor Advisory () http://secunia.com/advisories/20266 - Vendor Advisory
References () http://www.uniras.gov.uk/niscc/docs/br-20060525-00374.html?lang=en - () http://www.uniras.gov.uk/niscc/docs/br-20060525-00374.html?lang=en -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/26672 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/26672 -

Information

Published : 2006-05-31 10:06

Updated : 2024-11-21 00:11


NVD link : CVE-2006-2676

Mitre link : CVE-2006-2676

CVE.ORG link : CVE-2006-2676


JSON object : View

Products Affected

sitescape

  • sitescape_forum