VYPR

Aranda PassRecovery

by Aranda Software

CVEs (1)

  • CVE-2025-45994Sep 26, 2025
    risk 0.00cvss epss 0.00

    An issue in Aranda PassRecovery v1.0 allows attackers to enumerate valid user accounts in Active Directory via sending a crafted POST request to /user/existdirectory/1.