Security Advisory

CVE-2023-3221

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-09-04 12:31:30
Last updated 2024-09-30 18:47:09
Assigner INCIBE
State PUBLISHED

Description

User enumeration vulnerability in Password Recovery plugin 1.2 version for Roundcube, which could allow a remote attacker to create a test script against the password recovery function to enumerate all users in the database.