Username Enumeration Vulnerability in Novell Teaming by Novell
CVE-2009-1293

Currently unrated

Key Information:

Vendor

Novell

Status
Vendor
CVE Published:
16 April 2009

What is CVE-2009-1293?

The web login functionality in Novell Teaming versions 1.0 through SP3 (1.0.3) exposes a security weakness by revealing different error messages for valid and invalid usernames. This discrepancy allows attackers to effectively enumerate user accounts, thereby facilitating unauthorized access attempts. It is crucial for organizations using Novell Teaming to address this vulnerability by updating to the latest version to secure their systems against potential exploitation.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.