Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2024-24720
An issue was discovered in the Forgot password function in Innovaphone PBX before 14r1 devices. It provides information about whether a user exists on a system.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.002
EPSS Ranking
44.2%
CVSS Severity
CVSS v3 Score
5.3
References
https://cds.thalesgroup.com/en/tcs-cert/CVE-2024-24720
https://excellium-services.com/cert-xlm-advisory/CVE-2024-24720
https://wiki.innovaphone.com/index.php?title=Reference14r1:Release_Notes_Security#156999_-_App_Users:_Prevent_account_enumerate
https://excellium-services.com/cert-xlm-advisory/CVE-2024-24720
https://wiki.innovaphone.com/index.php?title=Reference14r1:Release_Notes_Security#156999_-_App_Users:_Prevent_account_enumerate
Products affected by CVE-2024-24720
Innovaphone
»
Innovaphone Pbx
»
Version:
10.00
cpe:2.3:a:innovaphone:innovaphone_pbx:10.00
Innovaphone
»
Innovaphone Pbx
»
Version:
14r1
cpe:2.3:a:innovaphone:innovaphone_pbx:14r1
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved