All 4 CVE vulnerabilities found in CasaOS-UserService, with AI-generated Chinese analysis, references, and POCs.
Vendor: IceWhaleTech
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-28232 | Username Enumeration in CasaOS via bypass of CVE-2024-24766 CWE-204 | 6.2 | Medium | 2024-04-01 |
| CVE-2024-24766 | CasaOS Username Enumeration CWE-204 | 6.2 | Medium | 2024-03-06 |
| CVE-2024-24767 | CasaOS Improper Restriction of Excessive Authentication Attempts vulnerability CWE-307 | 9.1 | Critical | 2024-03-06 |
| CVE-2024-24765 | CasaOS-UserService allows unauthorized access to any file CWE-200 | 7.5 | High | 2024-03-06 |
All 4 known CVE vulnerabilities affecting CasaOS-UserService with full Chinese analysis, references, and POCs where available.