CVE-2024-8891

Publication date

2024-09-18 13:10:01

Family

INCIBE

State

PUBLISHED

Description

An attacker with no knowledge of the current users in the web application, could build a dictionary of potential users and check the server responses as it indicates whether or not the user is present in CIRCUTOR Q-SMT in its firmware version 1.0.4.