CVE-2024-52043
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Nov 6, 2024
Updated: Nov 8, 2024
CWE ID 209
Summary
CVE-2024-52043 is a vulnerability affecting HumHub GmbH & Co. KG's HumHub on Linux. The issue enables attackers to extract sensitive information through error messages generated in HumHub versions 1.16.2 and below. This user enumeration vulnerability arises from insufficient input validation in HumHub's error message handling, potentially exposing user information to unauthorized entities.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Humhub
Affected Vendors
- Humhub