Vulnerability GHSA-87x6-8m9v-g8c2

Medium Risk
MEDIUM RISK
CVSS Score: 5.3
Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
2 years ago
April 10, 2024 at 03:30 PM UTC
Portainer CE allows username enumeration through authentication response timing
v0.6.0
v0.6.0

Summary

Portainer CE allows username enumeration through authentication response timing

Details

A user enumeration vulnerability was found in Portainer CE 2.19.4. This issue occurs during user authentication process, where a difference in response time could allow a remote unauthenticated user to determine if a username is valid or not.

Timeline

Published
2 years ago
April 10, 2024 at 03:30 PM UTC
Last Modified
7 hours ago
September 30, 2026 at 11:30 PM UTC