CVE
- Id
- 7339
- CVE No.
- CVE-2003-0512
- Status
- Candidate
- Description
- Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge.
- Phase
- Assigned (20030707)
- Votes
- None (candidate not yet proposed)
- Comments