Security Advisory

CVE-2022-45177

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-21 00:00:00
Last updated 2024-08-26 17:03:30
Assigner mitre
State PUBLISHED

Description

An issue was discovered in LIVEBOX Collaboration vDesk through v031. An Observable Response Discrepancy can occur under the /api/v1/vdeskintegration/user/isenableuser endpoint, the /api/v1/sharedsearch?search={NAME]+{SURNAME] endpoint, and the /login endpoint. The web application provides different responses to incoming requests in a way that reveals internal state information to an unauthorized actor outside of the intended control sphere.