Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x3wc-cq8w-x9q6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP2, and 9.1 produces login-failure messages indicating whether the username or password is incorrect, which allows remote attackers to enumerate user accounts via a brute-force attack.

IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP2, and 9.1 produces login-failure messages indicating whether the username or password is incorrect, which allows remote attackers to enumerate user accounts via a brute-force attack.

EPSS

Процентиль: 48%
0.00254
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 12 лет назад

IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP2, and 9.1 produces login-failure messages indicating whether the username or password is incorrect, which allows remote attackers to enumerate user accounts via a brute-force attack.

EPSS

Процентиль: 48%
0.00254
Низкий

Дефекты

CWE-200