Error Message Discrepancy Allows Enumeration of Valid User Accounts
CVE-2024-44762

Currently unrated

Key Information:

Vendor

Webmin

Vendor
CVE Published:
16 October 2024

What is CVE-2024-44762?

A discrepancy in error messages for invalid login attempts in Webmin Usermin v2.100 allows attackers to enumerate valid user accounts.

References

EPSS Score

23% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

.