5
CVE-2004-0583
- EPSS 1.12%
- Published 06.08.2004 04:00:00
- Last modified 03.04.2025 01:03:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
The account lockout functionality in (1) Webmin 1.140 and (2) Usermin 1.070 does not parse certain character strings, which allows remote attackers to conduct a brute force attack to guess user IDs and passwords.
Data is provided by the National Vulnerability Database (NVD)
Debian ≫ Debian Linux Version3.0
Debian ≫ Debian Linux Version3.0 Editionalpha
Debian ≫ Debian Linux Version3.0 Editionarm
Debian ≫ Debian Linux Version3.0 Editionhppa
Debian ≫ Debian Linux Version3.0 Editionia-32
Debian ≫ Debian Linux Version3.0 Editionia-64
Debian ≫ Debian Linux Version3.0 Editionm68k
Debian ≫ Debian Linux Version3.0 Editionmips
Debian ≫ Debian Linux Version3.0 Editionmipsel
Debian ≫ Debian Linux Version3.0 Editionppc
Debian ≫ Debian Linux Version3.0 Editions-390
Debian ≫ Debian Linux Version3.0 Editionsparc
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 1.12% | 0.762 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|