CVE Vulnerabilities

CVE-2004-1697

Published: Sep 21, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Forgot your Password link in Computer Associates (CA) Unicenter Management Portal 2.0 and 3.1 displays different error messages for users that exist and users that do not exist, which could allow remote attackers to guess valid usernames.

Affected Software

Name Vendor Start Version End Version
Unicenter_management Ca portal_2.0 (including) portal_2.0 (including)
Unicenter_management Ca portal_3.1 (including) portal_3.1 (including)

References