User enumeration vulnerability in Password Recovery plugin 1.2 version for Roundcube, which could allow a remote attacker to create a test script against the password recovery function to enumerate all users in the database.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: INCIBE

Published: 2023-09-04T12:31:30.699Z

Updated: 2023-09-04T12:31:30.699Z

Reserved: 2023-06-13T15:40:01.925Z


Link: CVE-2023-3221

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-09-04T13:15:32.853

Modified: 2023-09-08T14:12:14.190


Link: CVE-2023-3221

JSON object: View

cve-icon Redhat Information

No data.