CVE-2024-22893

Publication date

2024-09-25 00:00:00

Family

mitre

State

PUBLISHED

Description

OpenSlides 4.0.15 verifies passwords by comparing password hashes using a function with content-dependent runtime. This can allow attackers to obtain information about the password hash using a timing attack.