### [CVE-2023-47102](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-47102) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description UrBackup Server 2.5.31 allows brute-force enumeration of user accounts because a failure message confirms that a username is not valid. ### POC #### Reference - https://quantiano.github.io/cve-2023-47102/ #### Github - https://github.com/nitipoom-jar/CVE-2023-47102 - https://github.com/nomi-sec/PoC-in-GitHub - https://github.com/quantiano/cve-2023-47102