Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-38r2-56qf-x75g

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge.

Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge.

EPSS

Процентиль: 82%
0.01674
Низкий

Связанные уязвимости

nvd
больше 22 лет назад

Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge.

EPSS

Процентиль: 82%
0.01674
Низкий