User Enumeration Vulnerability in Kodbox by Koden
CVE-2023-48028
9.8CRITICAL
Key Information:
Badges
๐พ Exploit Exists
What is CVE-2023-48028?
Kodbox version 1.46.01 contains a vulnerability on its login page that allows attackers to enumerate valid user accounts. This is achieved by analyzing the varying responses returned based on login attempts, which can give insight into which usernames are valid. Such information can facilitate brute force attacks, where an attacker systematically attempts multiple passwords with the intent of gaining unauthorized access.
