CVE Database
/

CVE-2024-2464

Back to search

CVE-2024-2464

Published: Mar 21, 2024

Modified: Oct 30, 2024

PUBLISHED

Description

This issue occurs during password recovery, where a difference in messages could allow an attacker to determine if the user is valid or not, enabling a brute force attack with valid users.This issue affects CDeX application versions through 5.7.1.

VendorProductVersions

CDeX PSA

CDeX

affected
0 - <= 5.7.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now