Description
Limesurvey before 3.17.14 allows remote attackers to bruteforce the login form and enumerate usernames when the LDAP authentication method is used.
Remediation
References
Related Vulnerabilities
WordPress Plugin Appointment Hour Booking-WordPress Booking Cross-Site Scripting (1.3.16)
Apache HTTP Server Improper Encoding or Escaping of Output Vulnerability (CVE-2024-38474)
WordPress Cross-Site Scripting Vulnerability (0.70 - 3.7.11)
Dotclear Improper Authentication Vulnerability (CVE-2014-3781)