Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Diego Klinkhamer

#47812of 53,633
5.3Total CVSS
Vulnerabilities · 1
PT-2022-13264
5.3
2022-02-21
Qlik · Qlik Sense Enterprise · CVE-2022-0564
**Name of the Vulnerable Software and Affected Versions** Qlik Sense Enterprise on Windows (affected versions not specified) **Description** A vulnerability in Qlik Sense Enterprise on Windows could allow a remote attacker to enumerate domain user accounts. An attacker could exploit this vulnerability by sending authentication requests to an affected system. A successful exploit could allow the attacker to compare the response time that are returned by the affected system to determine which accounts are valid user accounts. Affected systems are only vulnerable if they have LDAP configured. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.