CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.8. See the original NVD description below for full technical details.
CVE
CVE-2025-26485
Severity
MEDIUM
CVSS
5.8
EPSS
0.29%
Original NVD Description
A vulnerability in Beta80 Life 1st enables the retrieval of different error messages for failed authentication attempts (in case of the usage of a wrong password or a non existent user). The difference in the returned error messages could be used by attackers to understand whether a certain user is registered in the Identity Manager. This issue affects Life 1st: 1.5.2.14234.