CVE-2025-6056

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
04/07/2025
Last modified:
08/07/2025

Description

Timing difference in password reset in Ergon Informatik AG's Airlock IAM 7.7.9, 8.0.8, 8.1.7, 8.2.4 and 8.3.1 allows unauthenticated attackers to enumerate usernames.