ZeroHour

CVE-2019-7217

PoC
CVSS 3.0
7.5 high
EPSS
2%p80
Published
()
Modified
Description

Citrix ShareFile before 19.12 allows User Enumeration. It is possible to enumerate application username based on different server responses using the request to check the otp code. No authentication is required.

Vendors
citrix
Products
sharefile
Weakness
CWE-203
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.