CVE-2025-49187 – Apache HTTP Server Username Brute Forcing
CVE ID : CVE-2025-49187
Published : June 12, 2025, 2:15 p.m. | 44 minutes ago
Description : For failed login attempts, the application returns different error messages depending on whether the login failed due to an incorrect password or a non-existing username. This allows an attacker to guess usernames until they find an existing one.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more…