Beveiligingsadvies

CVE-2023-3221

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-09-04 12:31:30
Laatst bijgewerkt 2024-09-30 18:47:09
Toegewezen door INCIBE
CVSS-score 5.3
Status PUBLISHED

Beschrijving

User enumeration vulnerability in Password Recovery plugin 1.2 version for Roundcube, which could allow a remote attacker to create a test script against the password recovery function to enumerate all users in the database.