Lucene search

K
nvd[email protected]NVD:CVE-2001-1483
HistoryDec 31, 2001 - 5:00 a.m.

CVE-2001-1483

2001-12-3105:00:00
CWE-203
web.nvd.nist.gov
2

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.002

Percentile

59.5%

One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user accounts by printing random passphrases if the user account does not exist and static passphrases if the user account does exist.

Affected configurations

Nvd
Node
nrl.navyone-time_passwords_in_everythingMatch2.4
OR
nrl.navyone-time_passwords_in_everythingMatch2.32
VendorProductVersionCPE
nrl.navyone-time_passwords_in_everything2.4cpe:2.3:a:nrl.navy:one-time_passwords_in_everything:2.4:*:*:*:*:*:*:*
nrl.navyone-time_passwords_in_everything2.32cpe:2.3:a:nrl.navy:one-time_passwords_in_everything:2.32:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.002

Percentile

59.5%