CVE-2018-17368

An issue was discovered in PublicCMS V4.0.180825. For an invalid login attempt, the response length is different depending on whether the username is valid, which makes it easier to conduct brute-force attacks.
References
Link Resource
https://github.com/sanluan/PublicCMS/issues/18 Exploit Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:publiccms:publiccms:4.0.180825:*:*:*:*:*:*:*

Information

Published : 2018-09-23 10:29

Updated : 2019-10-03 12:03


NVD link : CVE-2018-17368

Mitre link : CVE-2018-17368

Products Affected
No products.