CVE-2018-1073
—CVSS 3.1
5.3 medium
EPSS
2%p78
Published
()
Modified
Description
The web console login form in ovirt-engine before version 4.2.3 returned different errors for non-existent users and invalid passwords, allowing an attacker to discover the names of valid user accounts.
In the news0 stories
No ingested article mentions this CVE yet.