CVE-2025-65185

There is a username enumeration via local user login in Entrinsik Informer v5.10.1 which allows malicious users to enumerate users by entering an OTP code and new password then reviewing application responses.
Configurations

Configuration 1 (hide)

cpe:2.3:a:entrinsik:informer:5.10.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-17 17:15

Updated : 2026-01-05 15:06


NVD link : CVE-2025-65185

Mitre link : CVE-2025-65185

CVE.ORG link : CVE-2025-65185


JSON object : View

Products Affected

entrinsik

  • informer
CWE
CWE-203

Observable Discrepancy