CVE-2025-65185
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/12/2025
Last modified:
05/01/2026
Description
There is a username enumeration via local user login in Entrinsik Informer v5.10.1 which allows malicious users to enumerate users by entering an OTP code and new password then reviewing application responses.
Impact
Base Score 3.x
2.80
Severity 3.x
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:entrinsik:informer:5.10.1:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



