Security Advisory

CVE-2023-37482

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-02-11 10:26:27
Last updated 2025-04-08 08:19:41
Assigner siemens
CVSS score 5.3
State PUBLISHED

Description

The login functionality of the web server in affected devices does not normalize the response times of login attempts. An unauthenticated remote attacker could exploit this side-channel information to distinguish between valid and invalid usernames.