Record summary

CVE-2019-16516 has a selected CVSS score of 5.3 (medium); EIP currently links 1 catalogued exploit and 1 repository PoC.

Description

An issue was discovered in ConnectWise Control (formerly known as ScreenConnect) 19.3.25270.7185. There is a user enumeration vulnerability, allowing an unauthenticated attacker to determine with certainty if an account exists for a given username.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1
Repository PoCs
1

Proofs of concept

2

Catalogued exploits

ExploitDBConnectWise Control 19.2.24707 - Username EnumerationExploitDB exploitby Luca CuzzolinNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubczz/ScreenConnect-UserEnumRepository PoCby czzStars: 0Not analyzed2 files

8.0 KiB

GitHub

PoC details

References

7