CVE-2019-14278: Knowage-Suite Knowage
Medium severity, CVSS 5.3. EPSS: 1.2% chance of exploitation in the next 30 days.
In Knowage through 6.1.1, an unauthenticated user can enumerated valid usernames via the ChangePwdServlet page.
Affected products
- Knowage-Suite Knowage: up to and including 6.1.1
Published 2019-09-05. Last modified 2026-06-17.