User Enumeration Vulnerability in Gridscale X Prepay by Siemens
CVE-2025-40806
6.9MEDIUM
What is CVE-2025-40806?
A vulnerability has been identified in Gridscale X Prepay versions prior to 4.2.1, allowing for user enumeration through distinguishable responses. This flaw may enable an unauthenticated remote attacker to ascertain valid usernames, thereby facilitating subsequent brute force attacks against the system. It is crucial for users of the affected product to implement necessary security measures to mitigate potential risks.
Affected Version(s)
Gridscale X Prepay 0