PT-2004-1397 · Ibm · Aix
Published
2004-03-18
·
Updated
2024-02-14
·
CVE-2004-0243
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
AIX versions 4.3.3 through 5.1
Description
The issue allows remote attackers to guess the password via brute force methods when direct remote login is disabled. This occurs because AIX displays a different message if the password is correct.
Recommendations
For AIX versions 4.3.3 through 5.1, consider enabling direct remote login or implementing additional authentication measures to prevent brute force attacks.
Fix
Side Channel Attack
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Aix