The login functionality of the web server in affected devices does not normalize the response times of login attempts. An unauthenticated remote attacker could exploit this side-channel information to distinguish between valid and invalid usernames.
This Cyber News was published on www.tenable.com. Publication date: Tue, 11 Feb 2025 17:01:02 +0000