Information disclosure in Logon Page in MV's mConnect application v02.001.00 allows an malicious user to know valid users from the application's database via brute force.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mv mconnect 02.001.00 |
||
mv mconnect 2013.1.6.8 |