IBM Control Center
cpe:2.3:a:ibm:control_center:*:*:*:*:*:*:*
- 6.2.1
- 6.3.1
A user enumeration vulnerability has been identified in IBM Control Center versions 6.2.1 and 6.3.1. This vulnerability allows remote attackers to enumerate usernames by exploiting an observable discrepancy in login attempt responses.
Exploitation of this vulnerability could lead to unauthorized username enumeration, allowing attackers to gather valid usernames for potential further attacks.
Users can upgrade to IBM Control Center version 6.3.1.0 iFix02 or 6.2.1.0 iFix14. Instructions for downloading these versions are available on Fix Central.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.