Security Advisory

CVE-2024-8891

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-18 13:10:01
Last updated 2024-09-18 15:28:30
Assigner INCIBE
State PUBLISHED

Description

An attacker with no knowledge of the current users in the web application, could build a dictionary of potential users and check the server responses as it indicates whether or not the user is present in CIRCUTOR Q-SMT in its firmware version 1.0.4.