Vulnerability Details CVE-2006-1644
login.php in Interact 2.1.1 generates different responses depending on whether or not a username is valid, which allows remote attackers to determine valid usernames. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 60.1%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2006-1644
-
cpe:2.3:a:interact:interact:*
-
cpe:2.3:a:interact:interact:1.8.7
-
cpe:2.3:a:interact:interact:1.9
-
cpe:2.3:a:interact:interact:1.9.1
-
cpe:2.3:a:interact:interact:2.0
-
cpe:2.3:a:interact:interact:2.1