Title: MindAlign Unspecified User Enumeration Issue
Info
Disclosure
Aug 12, 2005
Discovery
Unknown
Dates
Exploit
Unknown
Solution
Unknown
Description
MindAlign contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered through an unspecified user enumeration issue, which will disclose user account information resulting in a loss of confidentiality.
Classification
Location:
Remote / Network Access
Attack Type:
Information Disclosure
Impact:
Loss of Confidentiality
Disclosure:
OSVDB Verified
Solution
Upgrade to version 6.0 or higher, as it has been reported to fix this vulnerability. In addition, Parlano has released a patch for some older versions. Contact Parlano support at support@parlano.com for an upgrade.