User Enumeration via Discrepancies in Error Messages in the Celk Sistemas Celk Saude v.3.1.252.1 password recovery functionality which allows a remote attacker to enumerate users through discrepancies in the responses.
The product provides different responses to incoming requests in a way that reveals internal state information to an unauthorized actor outside of the intended control sphere.
Link | Tags |
---|---|
https://cheatsheetseries.owasp.org/cheatsheets/Authentication_Cheat_Sheet.html | technical description |
https://github.com/gabriel-bri/vulnerability-research/tree/main/CVE-2024-55198 | third party advisory exploit |