CVE-2020-23283

Information disclosure in Logon Page in MV's mConnect application v02.001.00 allows an attacker to know valid users from the application's database via brute force.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mv:mconnect:02.001.00:*:*:*:*:*:*:*
cpe:2.3:a:mv:mconnect:2013.1.6.8:*:*:*:*:*:*:*

Information

Published : 2021-07-21 08:15

Updated : 2021-08-02 11:34


NVD link : CVE-2020-23283

Mitre link : CVE-2020-23283


JSON object : View

CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts

Advertisement

dedicated server usa

Products Affected

mv

  • mconnect