CVE Vulnerabilities

CVE-2006-2247

Published: May 09, 2006 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

WebCalendar 1.0.1 to 1.0.3 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.

Affected Software

Name Vendor Start Version End Version
Webcalendar Webcalendar 1.0.1 (including) 1.0.1 (including)
Webcalendar Webcalendar 1.0.2 (including) 1.0.2 (including)
Webcalendar Webcalendar 1.0.3 (including) 1.0.3 (including)
Webcalendar Ubuntu dapper *
Webcalendar Ubuntu devel *
Webcalendar Ubuntu edgy *
Webcalendar Ubuntu gutsy *
Webcalendar Ubuntu hardy *
Webcalendar Ubuntu intrepid *
Webcalendar Ubuntu jaunty *
Webcalendar Ubuntu karmic *

References