CVE-2026-24664
The Open eClass platform (formerly known as GUnet eClass) is a complete course management system. Prior to version 4.2, a username enumeration vulnerability allows unauthenticated attackers to identify valid user accounts by analyzing differences in the login response behavior. This issue has been patched in version 4.2.
- Affected products
- Open Eclass
- Gunet Open Eclass Platform
- < 4.2
- Fix
- Available
- CVSS 3.1
- 5.3 MEDIUM
- EPSS
- 0.2% (16th percentile)
- Weakness
- CWE-204
- NVD status
- Analyzed
- Published
- 2026-02-03
CVE-2026-24664 at NVD
No indexed exploits for CVE-2026-24664 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2026-24664 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.