PublicCVE

CVE-2003-0637

UNRATEDJSON exportCreate alert

Description

Novell iChain 2.2 before Support Pack 1 uses a shorter timeout for a non-existent user than a valid user, which makes it easier for remote attackers to guess usernames and conduct brute force password guessing.

Affected products