CVE
- Id
- 2606
- CVE No.
- CVE-2000-1037
- Status
- Candidate
- Description
- Check Point Firewall-1 session agent 3.0 through 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote attackers to determine valid usernames and guess a password via a brute force attack.
- Phase
- Proposed (20001129)
- Votes
- ACCEPT(2) Baker, Mell | NOOP(2) Cole, Wall
- Comments