CVE-2023-26071

An issue was discovered in MCUBO ICT through 10.12.4 (aka 6.0.2). An Observable Response Discrepancy can occur under the login web page. In particular, the web application provides different responses to incoming requests in a way that reveals internal state information to an unauthorized actor. That allow an unauthorized actor to perform User Enumeration attacks.
Configurations

Configuration 1 (hide)

cpe:2.3:a:harpaitalia:mcuboict:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:50

Type Values Removed Values Added
References () https://www.gruppotim.it/it/footer/red-team.html - Broken Link () https://www.gruppotim.it/it/footer/red-team.html - Broken Link

Information

Published : 2023-03-28 20:15

Updated : 2024-11-21 07:50


NVD link : CVE-2023-26071

Mitre link : CVE-2023-26071

CVE.ORG link : CVE-2023-26071


JSON object : View

Products Affected

harpaitalia

  • mcuboict
CWE
CWE-203

Observable Discrepancy