In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.848, the Login process allows attackers to check whether a username is valid by comparing response times.
References
| Link | Resource |
|---|---|
| http://packetstormsecurity.com/files/154164/CentOS-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html | Exploit Third Party Advisory VDB Entry |
| http://packetstormsecurity.com/files/154164/CentOS-WebPanel.com-CentOS-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html | Exploit Third Party Advisory VDB Entry |
| http://packetstormsecurity.com/files/154164/CentOS-WebPanel.com-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html | Exploit Third Party Advisory VDB Entry |
| http://packetstormsecurity.com/files/154164/CentOS-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html | Exploit Third Party Advisory VDB Entry |
| http://packetstormsecurity.com/files/154164/CentOS-WebPanel.com-CentOS-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html | Exploit Third Party Advisory VDB Entry |
| http://packetstormsecurity.com/files/154164/CentOS-WebPanel.com-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html | Exploit Third Party Advisory VDB Entry |
Configurations
History
21 Nov 2024, 04:25
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://packetstormsecurity.com/files/154164/CentOS-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html - Exploit, Third Party Advisory, VDB Entry | |
| References | () http://packetstormsecurity.com/files/154164/CentOS-WebPanel.com-CentOS-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html - Exploit, Third Party Advisory, VDB Entry | |
| References | () http://packetstormsecurity.com/files/154164/CentOS-WebPanel.com-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html - Exploit, Third Party Advisory, VDB Entry |
18 Apr 2022, 16:11
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) http://packetstormsecurity.com/files/154164/CentOS-WebPanel.com-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html - Exploit, Third Party Advisory, VDB Entry | |
| References | (MISC) http://packetstormsecurity.com/files/154164/CentOS-WebPanel.com-CentOS-Control-Web-Panel-CWP-0.9.8.848-User-Enumeration.html - Exploit, Third Party Advisory, VDB Entry | |
| CWE | CWE-203 |
Information
Published : 2019-08-21 19:15
Updated : 2024-11-21 04:25
NVD link : CVE-2019-13599
Mitre link : CVE-2019-13599
CVE.ORG link : CVE-2019-13599
JSON object : View
Products Affected
control-webpanel
- webpanel
CWE
CWE-203
Observable Discrepancy
