Back to search
CVE-2006-2247
Published: May 9, 2006
Modified: Aug 7, 2024
PUBLISHED
Description
WebCalendar 1.0.1 to 1.0.3 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
17853
vdb-entry
x_refsource_BID
25280
vdb-entry
x_refsource_OSVDB
DSA-1056
vendor-advisory
x_refsource_DEBIAN
webcalendar-user-information-disclosure(26262)
vdb-entry
x_refsource_XF
20108
third-party-advisory
x_refsource_SECUNIA
20060505 Re: WebCalendar User Account Enumeration Weakness
mailing-list
x_refsource_BUGTRAQ
19974
third-party-advisory
x_refsource_SECUNIA
20060504 WebCalendar User Account Enumeration Weakness
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now