An issue in the login and reset password functionality of Backdrop CMS v1.22.0 allows attackers to enumerate usernames via password reset requests and distinct responses returned based on usernames.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T09:15:15.261Z
Reserved: 2022-06-26T00:00:00
Link: CVE-2022-34530

No data.

Status : Modified
Published: 2022-08-01T20:15:08.810
Modified: 2024-11-21T07:09:42.820
Link: CVE-2022-34530

No data.