mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
19 lines
767 B
Markdown
19 lines
767 B
Markdown
![]() |
### [CVE-2023-48028](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-48028)
|
||
|

|
||
|

|
||
|

|
||
|
|
||
|
### Description
|
||
|
|
||
|
kodbox 1.46.01 has a security flaw that enables user enumeration. This problem is present on the login page, where an attacker can identify valid users based on varying response messages, potentially paving the way for a brute force attack.
|
||
|
|
||
|
### POC
|
||
|
|
||
|
#### Reference
|
||
|
- https://nitipoom-jar.github.io/CVE-2023-48028/
|
||
|
|
||
|
#### Github
|
||
|
- https://github.com/nitipoom-jar/CVE-2023-48028
|
||
|
- https://github.com/nomi-sec/PoC-in-GitHub
|
||
|
|