CVE-2018-1154
Medium
Elevated severity or exploit probability.
CVSS base
8.8
HIGH
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS — probability of exploitation (30 days)
0.7%
50.1th percentile
CISA KEV
Not listed
Weakness / dates
—
Published 2018-08-02 · modified 2026-08-17
Description
In SecurityCenter versions prior to 5.7.0, a username enumeration issue could allow an unauthenticated attacker to automate the discovery of username aliases via brute force, ultimately facilitating unauthorized access. Server response output has been unified to correct this issue.