CVE-2024-52043

Generation of Error Message Containing Sensitive Information in HumHub GmbH & Co. KG - HumHub on Linux allows: Excavation (user enumeration).This issue affects all released HumHub versions: through 1.16.2.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:humhub:humhub:*:*:*:*:*:*:*:*

History

08 Nov 2024, 20:39

Type Values Removed Values Added
First Time Humhub humhub
Humhub
CPE cpe:2.3:a:humhub:humhub:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3
References () https://github.com/advisories/GHSA-3q4w-rf2j-fx5x - () https://github.com/advisories/GHSA-3q4w-rf2j-fx5x - Third Party Advisory
References () https://https://github.com/humhub/humhub - () https://https://github.com/humhub/humhub - Broken Link
References () https://www.vulsec.org/advisories - () https://www.vulsec.org/advisories - Third Party Advisory

06 Nov 2024, 11:15

Type Values Removed Values Added
CWE CWE-204 CWE-209
Summary (en) Observable Response Discrepancy vulnerability in HumHub GmbH & Co. KG - HumHub on Linux allows: Excavation (user enumeration).This issue affects all released HumHub versions: through 1.16.2. (en) Generation of Error Message Containing Sensitive Information in HumHub GmbH & Co. KG - HumHub on Linux allows: Excavation (user enumeration).This issue affects all released HumHub versions: through 1.16.2.

06 Nov 2024, 10:15

Type Values Removed Values Added
References
  • {'url': 'https://github.com/humhub/humhub/security', 'source': '2fdefc65-d750-4b8d-96ee-6e2c0c42dbfe'}
  • () https://github.com/advisories/GHSA-3q4w-rf2j-fx5x -
  • () https://https://github.com/humhub/humhub -
Summary
  • (es) Vulnerabilidad de discrepancia de respuesta observable en HumHub GmbH & Co. KG - HumHub en Linux permite: Excavación (enumeración de usuarios). Este problema afecta a todas las versiones publicadas de HumHub: hasta la 1.16.2.

06 Nov 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-06 08:15

Updated : 2024-11-08 20:39


NVD link : CVE-2024-52043

Mitre link : CVE-2024-52043

CVE.ORG link : CVE-2024-52043


JSON object : View

Products Affected

humhub

  • humhub
CWE
CWE-209

Generation of Error Message Containing Sensitive Information