Vulnerabilities > CVE-2019-7217 - Information Exposure Through Discrepancy vulnerability in Citrix Sharefile
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
Citrix ShareFile before 19.12 allows User Enumeration. It is possible to enumerate application username based on different server responses using the request to check the otp code. No authentication is required.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 13 |