Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28636
HistoryDec 18, 2020 - 8:40 a.m.

Information Disclosure

2020-12-1808:40:42
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.001 Low

EPSS

Percentile

38.9%

github.com/hashicorp/vault is vulnerable to information disclosure. The vulnerability is possible because the error messages returned by the LDAP auth methold allows user enumeration.

0.001 Low

EPSS

Percentile

38.9%