Description
IBM Aspera Orchestrator 4.0.1 could allow a remote attacker to enumerate usernames due to observable response discrepancies. IBM X-Force ID: 248545.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-31061 | IBM Aspera Orchestrator 4.0.1 could allow a remote attacker to enumerate usernames due to observable response discrepancies. IBM X-Force ID: 248545. |
References
History
Tue, 07 Jan 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm
Ibm aspera Orchestrator |
|
| Weaknesses | CWE-203 | |
| CPEs | cpe:2.3:a:ibm:aspera_orchestrator:4.0.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Ibm
Ibm aspera Orchestrator |
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-08-02T12:09:42.807Z
Reserved: 2023-02-27T17:47:22.586Z
Link: CVE-2023-27283
Updated: 2024-08-02T12:09:42.807Z
Status : Analyzed
Published: 2024-05-04T14:16:01.720
Modified: 2025-01-07T21:08:32.720
Link: CVE-2023-27283
No data.
OpenCVE Enrichment
No data.
EUVD