CVE-2020-1717

CVSS v3.1 2.7 (Low)
27% Progress
CVSS v2.0 4 (Medium)
40% Progress
EPSS 0.05 % (24th)
0.05% Progress
Affected Products 4
Advisories 1

A flaw was found in Keycloak 7.0.1. A logged in user can do an account email enumeration attack.

Weaknesses
CWE-209
Generation of Error Message Containing Sensitive Information
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2021-02-11 18:15:14
(3 years ago)
Updated Date
2021-02-17 19:23:59
(3 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Redhat Keycloak 7.0.1 cpe:2.3:a:redhat:keycloak:7.0.1

Configuration #2

    CPE23 From Up To
  Redhat Jboss Fuse 7.0.0 cpe:2.3:a:redhat:jboss_fuse:7.0.0
  Redhat Openshift Application Runtimes cpe:2.3:a:redhat:openshift_application_runtimes:-
  Redhat Single Sign-on 7.0 cpe:2.3:a:redhat:single_sign-on:7.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...