7.5

CVE-2023-5570

User Enumeration in Inohom's Home Manager Gateway

Improper Protection for Outbound Error Messages and Alert Signals vulnerability in Inohom Home Manager Gateway allows Account Footprinting.

This issue affects Home Manager Gateway: before v.1.27.12.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
InohomHome Manager Gateway Version < 1.27.12
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.45% 0.355
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
iletisim@usom.gov.tr 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CWE-1320 Improper Protection for Outbound Error Messages and Alert Signals

Untrusted agents can disable alerts about signal conditions exceeding limits or the response mechanism that handles such alerts.

https://www.usom.gov.tr/bildirim/tr-23-0609
Third Party Advisory
https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-23-0609