In Talend Administration Center 7.3.1.20200219 before TAC-15950, the Forgot Password feature provides different error messages for invalid reset attempts depending on whether the email address is associated with any account. This allows remote attackers to enumerate accounts via a series of requests.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T06:48:35.813Z
Reserved: 2022-05-07T00:00:00
Link: CVE-2022-30332

Updated: 2024-08-03T06:48:35.813Z

Status : Modified
Published: 2023-01-10T21:15:11.520
Modified: 2024-11-21T07:02:36.457
Link: CVE-2022-30332

No data.