CVE-2023-48028

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/11/2023
Last modified:
25/11/2023

Description

kodbox 1.46.01 has a security flaw that enables user enumeration. This problem is present on the login page, where an attacker can identify valid users based on varying response messages, potentially paving the way for a brute force attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:kodcloud:kodbox:1.46.01:*:*:*:*:*:*:*