Aug. 28, 2023, 1:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

User enumeration is found in PHPJabbers Yacht Listing Script v2.0. This issue occurs during password recovery, where a difference in messages could allow an attacker to determine if the user is valid or not, enabling a brute force attack with valid users.

attack brute cve enumeration found issue listing messages password password recovery recovery script user enumeration valid

Sr. Product Manager

@ MixMode | Remote, US

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Test Systems Design & Cybersecurity Engineer

@ Boeing | USA - El Segundo, CA

Cybersecurity Support Engineer (FortiClient) - Malaysia

@ Fortinet | Wilayah Persekutuan Kuala Lumpur, Malaysia