Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-3105
HistorySep 23, 2014 - 9:55 p.m.

Design/Logic Flaw

2014-09-2321:55:00
PRIOn knowledge base
www.prio-n.com
6

6.9 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

54.9%

The OSLC integration feature in the Web component in IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 provides different error messages for failed login attempts depending on whether the username exists, which allows remote attackers to enumerate account names via a series of requests.

6.9 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

54.9%

Related for PRION:CVE-2014-3105