CVE Vulnerabilities

CVE-2004-1697

Published: Sep 21, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Forgot your Password link in Computer Associates (CA) Unicenter Management Portal 2.0 and 3.1 displays different error messages for users that exist and users that do not exist, which could allow remote attackers to guess valid usernames.

Affected Software

NameVendorStart VersionEnd Version
Unicenter_managementCaportal_2.0 (including)portal_2.0 (including)
Unicenter_managementCaportal_3.1 (including)portal_3.1 (including)

References