All vulnerabilities
144 / 144
Sort
5.3
CVE-2022-41697DEB
A user enumeration vulnerability exists in the login functionality of Ghost Foundation Ghost 5.…
2022-01-01Pre-auth
EPSS20.2%
pct 97
5.3
CVE-2016-9499CVE
Accellion FTP server prior to version FTA_9_12_220 only returns the username in the server resp…
2016-01-01Pre-auth
EPSS7.8%
pct 93
5.3
CVE-2019-19030CVE
Cloud Native Computing Foundation Harbor before 1.10.3 and 2.x before 2.0.1 allows resource enu…
2019-01-01Pre-auth
EPSS1.9%
pct 76
7.5
CVE-2021-20049CVE
A vulnerability in SonicWall SMA100 password change API allows a remote unauthenticated attacke…
2021-01-01Pre-auth
EPSS1.3%
pct 67
5.3
CVE-2022-0564CVE
A vulnerability in Qlik Sense Enterprise on Windows could allow an remote attacker to enumerate…
2022-01-01Pre-auth
EPSS1.3%
pct 67
5.3
CVE-2021-39189CVE
Pimcore is an open source data & experience management platform. In versions prior to 10.1.3, i…
2021-01-01Pre-auth
EPSS1.2%
pct 65
3.7
CVE-2020-11063CVE
In TYPO3 CMS versions 10.4.0 and 10.4.1, it has been discovered that time-based attacks can be …
2020-01-01Pre-auth
EPSS1.2%
pct 63
5.3
CVE-2024-39211
Kaiten 57.128.8 allows remote attackers to enumerate user accounts via a crafted POST request, …
2024-01-01Pre-auth
EPSS1.1%
pct 62
7.5
CVE-2021-34580CVE
In mymbCONNECT24, mbCONNECT24 <= 2.9.0 an unauthenticated user can enumerate valid backend user…
2021-01-01Pre-auth
EPSS1.0%
pct 58
5.3
CVE-2022-31248CVE
A Observable Response Discrepancy vulnerability in spacewalk-java of SUSE Manager Server 4.1, S…
2022-01-01Pre-auth
EPSS1.0%
pct 56
6.9
CVE-2025-34255CVE
D-Link Nuclias Connect firmware versions <= 1.3.1.4 contain an observable response discrepancy …
2025-01-01Pre-auth
EPSS1.0%
pct 56
6.9
CVE-2025-34254CVE
D-Link Nuclias Connect firmware versions <= 1.3.1.4 contain an observable response discrepancy …
2025-01-01Pre-auth
EPSS1.0%
pct 56
3.7
CVE-2024-2482CVE
A vulnerability has been found in Surya2Developer Hostel Management Service 1.0 and classified …
2024-01-01Pre-auth
EPSS0.8%
pct 52
5.3
CVE-2022-22520CVE
A remote, unauthenticated attacker can enumerate valid users by sending specific requests to th…
2022-01-01Pre-auth
EPSS0.8%
pct 51
5.3
CVE-2023-23449CVE
Observable Response Discrepancy in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215…
2023-01-01Pre-auth
EPSS0.8%
pct 51
5.5
CVE-2025-62512DEB
Piwigo is an open source photo gallery application for the web. In version 15.5.0 and likely ea…
2025-01-01Pre-auth
EPSS0.8%
pct 50
7.5
CVE-2024-24766CVE
CasaOS-UserService provides user management functionalities to CasaOS. Starting in version 0.4.…
2024-01-01Pre-auth
EPSS0.8%
pct 50
5.3
CVE-2022-20633CVE
A vulnerability in the web-based management interface of Cisco ECE could allow an unauthen…
2022-01-01Pre-auth
EPSS0.7%
pct 49
5.3
CVE-2021-38476CVE
InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 authentication process resp…
2021-01-01Pre-auth
EPSS0.7%
pct 49
5.3
CVE-2024-36510CVE
An observable response discrepancy vulnerability [CWE-204] in FortiClientEMS 7.4.0, 7.2.0 throu…
2024-01-01Pre-auth
EPSS0.7%
pct 48
5.3
CVE-2022-1989CVE
All CODESYS Visualization versions before V4.2.0.0 generate a login dialog vulnerable to inform…
2022-01-01Pre-auth
EPSS0.7%
pct 47
5.3
CVE-2025-1101CVE
A CWE-204 "Observable Response Discrepancy" in the login page in Q-Free MaxTime less than or eq…
2025-01-01Pre-auth
EPSS0.7%
pct 47
6.3
CVE-2024-6056CVE
A vulnerability was found in nasirkhan Laravel Starter up to 11.8.0. It has been rated as probl…
2024-01-01Pre-auth
EPSS0.7%
pct 46
6.9
CVE-2025-34155
Tibbo AggreGate Network Manager < 6.40.05 contains an observable response discrepancy in its lo…
2025-01-01Pre-auth
EPSS0.6%
pct 46
5.3
CVE-2023-1540CVE
Observable Response Discrepancy in GitHub repository answerdev/answer prior to 1.0.6.
2023-01-01Pre-auth
EPSS0.6%
pct 45
5.5
CVE-2026-28288ANC
Dify is an open-source LLM app development platform. Prior to 1.9.0, responses from the Dify AP…
2026-01-01Pre-auth
EPSS0.6%
pct 45
7.5
CVE-2024-28232ANC
Go package IceWhaleTech/CasaOS-UserService provides user management functionalities to CasaOS. …
2024-01-01Pre-auth
EPSS0.6%
pct 44
6.9
CVE-2025-23214ANC
Cosmos provides users the ability self-host a home server by acting as a secure gateway to your…
2025-01-01Pre-auth
EPSS0.6%
pct 44
2.7
CVE-2026-28358ANC
NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, the passwo…
2026-01-01Pre-auth
EPSS0.6%
pct 43
5.3
CVE-2024-25146CVE
Liferay Portal 7.2.0 through 7.4.1, and older unsupported versions, and Liferay DXP 7.3 before …
2024-01-01Pre-auth
EPSS0.6%
pct 43
5.3
CVE-2022-39315CVE
Kirby is a Content Management System. Prior to versions 3.5.8.2, 3.6.6.2, 3.7.5.1, and 3.8.1, a…
2022-01-01Pre-auth
EPSS0.6%
pct 43
5.3
CVE-2023-35698CVE
Observable Response Discrepancy in the SICK ICR890-4 could allow a remote attacker to identify…
2023-01-01Pre-auth
EPSS0.6%
pct 42
5.8
CVE-2024-40627UBU
Fastapi OPA is an opensource fastapi middleware which includes auth flow. HTTP `OPTIONS` reques…
2024-01-01Pre-auth
EPSS0.6%
pct 42
5.3
CVE-2023-32346CVE
Teltonika’s Remote Management System versions prior to 4.10.0 contain a function that allows u…
2023-01-01Pre-auth
EPSS0.5%
pct 41
9.3
CVE-2018-25350
userSpice 4.3.24 contains a username enumeration vulnerability that allows unauthenticated atta…
2018-01-01Pre-auth
EPSS0.5%
pct 40
4.3
CVE-2023-23584CVE
An observable response discrepancy in the Gallagher Command Centre RESTAPI allows an insuffici…
2023-01-01
EPSS0.5%
pct 38
5.3
CVE-2021-36201CVE
Under certain circumstances a CCURE Portal user could enumerate user accounts in CCURE 9000 ver…
2021-01-01Pre-auth
EPSS0.5%
pct 38
4.3
CVE-2023-39343CVE
Sulu is an open-source PHP content management system based on the Symfony framework. It allows …
2023-01-01
EPSS0.5%
pct 38
5.3
CVE-2024-1145CVE
User enumeration vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier.…
2024-01-01Pre-auth
EPSS0.5%
pct 37
6.9
CVE-2025-24980ANC
pimcore/admin-ui-classic-bundle provides a Backend UI for Pimcore. In affected versions an erro…
2025-01-01Pre-auth
EPSS0.5%
pct 37
Select a vulnerability on the left to open the preview.