Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-31740 | The HCL Domino AppDev Pack IAM service is susceptible to a User Account Enumeration vulnerability. During a failed login attempt a difference in messages could allow an attacker to determine if the user is valid or not. The attacker could use this information to focus a brute force attack on valid users. |
Fri, 17 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-203 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-01-17T15:22:07.147Z
Reserved: 2023-03-10T03:50:27.023Z
Link: CVE-2023-28015
Updated: 2024-08-02T12:23:30.867Z
Status : Modified
Published: 2023-05-23T22:15:09.120
Modified: 2025-01-17T16:15:29.737
Link: CVE-2023-28015
No data.
OpenCVE Enrichment
No data.
EUVD