CVE-2023-48028

kodbox 1.46.01 has a security flaw that enables user enumeration. This problem is present on the login page, where an attacker can identify valid users based on varying response messages, potentially paving the way for a brute force attack.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kodcloud:kodbox:1.46.01:*:*:*:*:*:*:*

History

25 Nov 2023, 02:14

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-18 00:15

Updated : 2024-02-05 00:22


NVD link : CVE-2023-48028

Mitre link : CVE-2023-48028

CVE.ORG link : CVE-2023-48028


JSON object : View

Products Affected

kodcloud

  • kodbox
CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts