Uploaded image for project: 'ZABBIX BUGS AND ISSUES'
  1. ZABBIX BUGS AND ISSUES
  2. ZBX-26255

User enumeration via timing attack in Zabbix frontend login form and API (CVE-2024-36469)

XMLWordPrintable

      Execution time for an unsuccessful login differs when using a non-existing username compared to using an existing one.

            zabbix.support Zabbix Support Team
            jnulle Janis Nulle
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: