CVE Vulnerabilities

CVE-2019-19030

Published: Dec 26, 2022 | Modified: Apr 14, 2025
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Cloud Native Computing Foundation Harbor before 1.10.3 and 2.x before 2.0.1 allows resource enumeration because unauthenticated API calls reveal (via the HTTP status code) whether a resource exists.

Affected Software

NameVendorStart VersionEnd Version
HarborLinuxfoundation*1.10.3 (excluding)
HarborLinuxfoundation2.0.0 (including)2.0.1 (excluding)

References