Security Advisory

CVE-2003-0512

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2003-07-29 04:00:00
Last updated 2024-08-08 01:58:11
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge.