CVE Vulnerabilities

CVE-2001-1497

Published: Dec 31, 2001 | Modified: Jul 23, 2021
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Microsoft Internet Explorer 4.0 through 6.0 could allow local users to differentiate between alphanumeric and non-alphanumeric characters used in a password by pressing certain control keys that jump between non-alphanumeric characters, which makes it easier to conduct a brute-force password guessing attack.

Affected Software

Name Vendor Start Version End Version
Ie Microsoft 4.0 (including) 4.0 (including)
Ie Microsoft 4.0.1 (including) 4.0.1 (including)
Ie Microsoft 4.1 (including) 4.1 (including)
Internet_explorer Microsoft 4.0 (including) 4.0 (including)
Internet_explorer Microsoft 4.0.1 (including) 4.0.1 (including)
Internet_explorer Microsoft 4.0.1-sp2 (including) 4.0.1-sp2 (including)
Internet_explorer Microsoft 5.5 (including) 5.5 (including)
Internet_explorer Microsoft 5.5-sp1 (including) 5.5-sp1 (including)
Internet_explorer Microsoft 5.5-sp2 (including) 5.5-sp2 (including)
Internet_explorer Microsoft 6.0 (including) 6.0 (including)

References