ZeroHour

CVE-2017-14772

CVSS 3.0
3.3 low
EPSS
<1%p23
Published
()
Modified
Description

Skybox Manager Client Application is prone to information disclosure via a username enumeration attack. A local unauthenticated attacker could exploit the flaw to obtain valid usernames, by analyzing error messages upon valid and invalid account login attempts.

Vendors
skyboxsecurity
Products
skybox manager client application
Weakness
CWE-200
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.