CVE-2003-0512

Publication date

2003-07-29 04:00:00

Family

mitre

State

PUBLISHED

Description

Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge.