Vulnerabilities > CVE-2022-32425 - Information Exposure Through Discrepancy vulnerability in Mealie 1.0.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
The login function of Mealie v1.0.0beta-2 allows attackers to enumerate existing usernames by timing the server's response time.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |