← Back

CVE-2013-6043

nvd nist
Published: Dec 27, 2014Modified: May 6, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The login function in Softaculous Webuzo before 2.1.4 provides different error messages for invalid authentication attempts depending on whether the user account exists, which allows remote attackers to enumerate usernames via a series of requests.

Affected (4)

Products: Softaculous: Webuzo
1 product
Webuzo
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Softaculous
Up to 2.1.3
Version 2.1.0
Version 2.1.1
Version 2.1.2

Timeline

No history available yet.