{ "id": "CVE-2024-25651", "sourceIdentifier": "cve@mitre.org", "published": "2024-03-14T03:15:08.727", "lastModified": "2024-03-14T12:52:09.877", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "User enumeration can occur in the Authentication REST API in Delinea PAM Secret Server 11.4. This allows a remote attacker to determine whether a user is valid because of a difference in responses from the /oauth2/token endpoint." }, { "lang": "es", "value": "La enumeraci\u00f3n de usuarios puede ocurrir en la API REST de autenticaci\u00f3n en Delinea PAM Secret Server 11.4. Esto permite a un atacante remoto determinar si un usuario es v\u00e1lido debido a una diferencia en las respuestas del endpoint /oauth2/token." } ], "metrics": {}, "references": [ { "url": "https://www.cvcn.gov.it/cvcn/cve/CVE-2024-25651", "source": "cve@mitre.org" } ] }