Thomas Hauck Jana Server 2.x through 2.2.1, and 1.4.6 and earlier, does not restrict the number of unsuccessful login attempts, which makes it easier for remote attackers to gain privileges via brute force username and password guessing.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:40
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2002-07/0329.html - | |
References | () http://www.iss.net/security_center/static/9688.php - Vendor Advisory |
Information
Published : 2002-10-04 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2002-1065
Mitre link : CVE-2002-1065
CVE.ORG link : CVE-2002-1065
JSON object : View
Products Affected
t._hauck
- jana_web_server
CWE