8.8
CVE-2018-1154
- EPSS 0.67%
- Veröffentlicht 02.08.2018 19:29:00
- Zuletzt bearbeitet 17.08.2026 14:50:49
- Erkennungen
In SecurityCenter versions prior to 5.7.0, a username enumeration issue could allow an unauthenticated attacker to automate the discovery of username aliases via brute force, ultimately facilitating unauthorized access. Server response output has been unified to correct this issue.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Tenable ≫ Security Center Version < 5.7.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.67% | 0.472 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 8.8 | 2.8 | 5.9 |
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 3.3 | 6.5 | 2.9 |
AV:A/AC:L/Au:N/C:P/I:N/A:N
|
http://www.securitytracker.com/id/1041431
https://www.tenable.com/security/tns-2018-11