Filtered by vendor Arandasoft Subscriptions
Filtered by product Passrecovery Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-45994 2 Aranda, Arandasoft 2 Passrecovery, Passrecovery 2025-10-03 7.5 High
An issue in Aranda PassRecovery v1.0 allows attackers to enumerate valid user accounts in Active Directory via sending a crafted POST request to /user/existdirectory/1.