Lucene search

K
cvelistMitreCVELIST:CVE-2021-33617
HistoryJul 31, 2021 - 4:55 p.m.

CVE-2021-33617

2021-07-3116:55:50
mitre
www.cve.org
3
zoho manageengine
password manager pro
username enumeration

AI Score

5.6

Confidence

High

EPSS

0.002

Percentile

57.0%

Zoho ManageEngine Password Manager Pro before 11.2 11200 allows login/AjaxResponse.jsp?RequestType=GetUserDomainName&userName= username enumeration, because the response (to a failed login request) is null only when the username is invalid.

AI Score

5.6

Confidence

High

EPSS

0.002

Percentile

57.0%

Related for CVELIST:CVE-2021-33617