7.5
CVE-2002-1065
- EPSS 0.64%
- Veröffentlicht 04.10.2002 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Thomas Hauck Jana Server 2.x through 2.2.1, and 1.4.6 and earlier, does not restrict the number of unsuccessful login attempts, which makes it easier for remote attackers to gain privileges via brute force username and password guessing.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
T. Hauck ≫ Jana Web Server Version1.0
T. Hauck ≫ Jana Web Server Version1.45
T. Hauck ≫ Jana Web Server Version1.46
T. Hauck ≫ Jana Web Server Version2.0
T. Hauck ≫ Jana Web Server Version2.0_beta1
T. Hauck ≫ Jana Web Server Version2.0_beta2
T. Hauck ≫ Jana Web Server Version2.2.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.64% | 0.68 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|