Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-54412 | Helix ALM prior to 2025.1 returns distinct error responses during authentication, allowing an attacker to determine whether a username exists. |
| Link | Providers |
|---|---|
| https://portal.perforce.com/s/detail/a91PA000001SeWbYAK |
|
Tue, 15 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 15 Apr 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Helix ALM prior to 2025.1 returns distinct error responses during authentication, allowing an attacker to determine whether a username exists. | |
| Title | Potential Username Enumeration in Helix ALM | |
| Weaknesses | CWE-203 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Perforce
Published:
Updated: 2025-04-15T15:58:29.394Z
Reserved: 2024-11-11T18:55:03.258Z
Link: CVE-2024-11084
Updated: 2025-04-15T15:58:22.809Z
Status : Deferred
Published: 2025-04-15T16:15:21.600
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-11084
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:21:38Z
EUVD