CVE-2025-6056 Information

Description

Timing difference in password reset in Ergon Informatik AG’s Airlock IAM 7.7.9 8.0.8 8.1.7 8.2.4 and 8.3.1 allows unauthenticated attackers to enumerate usernames.

Reference

https://www.redguard.ch/blog/2025/07/04/cve-2025-6056-airlock-iam-username-enumeration/

CNNVD-202507-345 (Published: 2025-07-04)

Share on: