DALIM SOFTWARE ES Core 5.0 build...

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### Description The weakness is caused due to the 'Login.jsp' script enumerating the list of valid usernames when some characters are provided via the 'login' parameter. ### Vendor Dalim Software GmbH - https://www.dalim.com ### Affected Version * ES/ESPRiT 5.0 (build 7184.1) * (build 7163.2) * (build 7163.0) * (build 7135.0) * (build 7114.1) * (build 7114.0) * (build 7093.1) * (build 7093.0) * (build 7072.0) * (build 7051.3) * (build 7051.1) * (build 7030.0) * (build 7009.0) * (build 6347.0) * (build 6326.0) * (build 6305.1) * (build 6235.9) * (build 6172.1) * ES/ESPRiT 4.5 (build 6326.0) * (build 6144.2) * (build 5180.2) * (build 5096.0) * (build 4314.3) * (build 4314.0) * (build 4146.4) * (build 3308.3) * ES/ESPRiT 4.0 (build 4202.0) * (build 4132.1) * (build 2235.0) * ES/ESPRiT 3.0 ### Tested On * Red Hat Enterprise Linux Server release 7.3 (Maipo) * CentOS 7 * Apache Tomcat/7.0.78 * Apache Tomcat/7.0.67 * Apache Tomcat/7.0.42 * Apache Tomcat/6.0.35 * Apache-Coyote/1.1 *...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息