mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-29 09:41:05 +00:00
18 lines
741 B
Markdown
18 lines
741 B
Markdown
![]() |
### [CVE-2020-35398](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-35398)
|
||
|

|
||
|

|
||
|

|
||
|
|
||
|
### Description
|
||
|
|
||
|
An issue was discovered in UTI Mutual fund Android application 5.4.18 and prior, allows attackers to brute force enumeration of usernames determined by the error message returned after invalid credentials are attempted.
|
||
|
|
||
|
### POC
|
||
|
|
||
|
#### Reference
|
||
|
- https://cvewalkthrough.com/cve-2020-35398-uti-mutual-fund-android-application-username-enumeration/
|
||
|
|
||
|
#### Github
|
||
|
No PoCs found on GitHub currently.
|
||
|
|