SSA-097435 PUBLISHED CVSS 5.300000190734863 MEDIUM

The authentication mechanism of affected applications contains an observable response discrepancy vulnerability when validating usernames. This could allow unauthenticated remote attackers to distinguish between valid and invalid usernames.

Risk Scores

CVSS v3.1
5.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Affected Products

VendorProductVersions
SiemensMendix Runtime V9
SiemensMendix Runtime V10
SiemensMendix Runtime V10.12
SiemensMendix Runtime V10.6
SiemensMendix Runtime V8

Timeline

References

Open in Interactive Console →