CVE

Id
5800  
CVE No.
CVE-2002-1416  
Status
Candidate  
Description
The POP3 service for WebEasyMail 3.4.2.2 and earlier generates diffferent error messages for valid and invalid usernames during authentication, which makes it easier for remote attackers to conduct brute force attacks.  
Phase
Proposed (20030317)  
Votes
ACCEPT(1) Cole | NOOP(2) Cox, Wall | REVIEWING(1) Baker  
Comments
Baker> See entry for CAN 2002-1415...