Citrix ShareFile before 19.12 allows User Enumeration. It is possible to enumerate application username based on different server responses using the request to check the otp code. No authentication is required.
References
Link | Resource |
---|---|
http://www.sk-it.com/en/cve.html | Exploit Third Party Advisory |
http://www.sk-it.com/en/cve.html | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 04:47
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.sk-it.com/en/cve.html - Exploit, Third Party Advisory |
Information
Published : 2019-05-13 19:29
Updated : 2024-11-21 04:47
NVD link : CVE-2019-7217
Mitre link : CVE-2019-7217
CVE.ORG link : CVE-2019-7217
JSON object : View
Products Affected
citrix
- sharefile
CWE
CWE-203
Observable Discrepancy