CVE Published: 13/07/2018 |
CVE Updated: 06/08/2024 |
CVE Year: 2016 Source: certcc |
Vendor: Accellion |
Product: FTP Server Status : PUBLISHED
CVE-2016-9499 Description
Accellion FTP server prior to version FTA_9_12_220 only returns the username in the server response if the username is invalid. An attacker may use this information to determine valid user accounts and enumerate them.