Computer Security
[EN] securityvulns.ru no-pyccku


Axway Email Firewall information leakage
Published:21.01.2013
Source:
SecurityVulns ID:12838
Type:remote
Threat Level:
4/10
Description:Different authentication error codes for existant and non-existant user
Affected:AXWAY : Axway Email Firewall 6.5
CVE:CVE-2012-6452 (Axway Secure Messenger before 6.5 Updated Release 7, as used in Axway Email Firewall, provides different responses to authentication requests depending on whether the user exists, which allows remote attackers to enumerate users via a series of requests.)
Original documentdocumentjason.doyle_(at)_fishnetsecurity.com, CVE-2012-6452 Axway Secure Messenger Username Disclosure (21.01.2013)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod