CVE-2018-1154

CVE-2018-1154CVE-2018-1154

tenable / security_center

Description

In SecurityCenter versions prior to 5.7.0, a username enumeration issue could allow an unauthenticated attacker to automate the discovery of username aliases via brute force, ultimately facilitating unauthorized access. Server response output has been unified to correct this issue.

Scoring

CVSS 8.8 ()
VectorCVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Last modified2026-08-17
Sourced from NVD. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.