Back to search
CVE-2002-0580
Published: Jun 11, 2002
Modified: Aug 8, 2024
PUBLISHED
Description
WorkforceROI Xpede 4.1 allows remote attackers to obtain the database username via a request to datasource.asp, which leaks the username in a form and allows the attacker to more easily conduct brute force password guessing attacks.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
xpede-datasource-reveal-account(8902)
vdb-entry
x_refsource_XF
20020419 Xpede many vulnerabilities
mailing-list
x_refsource_BUGTRAQ
4553
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now