Page 3 of 11 results (0.002 seconds)

CVSS: 5.0EPSS: 0%CPEs: 1EXPL: 0

Novell iChain 2.2 before Support Pack 1 uses a shorter timeout for a non-existent user than a valid user, which makes it easier for remote attackers to guess usernames and conduct brute force password guessing. • http://support.novell.com/cgi-bin/search/searchtid.cgi?/2966435.htm • CWE-203: Observable Discrepancy •