CVE-2001-1483

One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user accounts by printing random passphrases if the user account does not exist and static passphrases if the user account does exist.
References
Link Resource
http://www.securityfocus.com/archive/1/20011115221226.7C93E186B0%40atlas.dgp.toronto.edu Broken Link Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/3549 Broken Link Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/7572 Third Party Advisory VDB Entry
http://www.securityfocus.com/archive/1/20011115221226.7C93E186B0%40atlas.dgp.toronto.edu Broken Link Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/3549 Broken Link Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/7572 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:nrl.navy:one-time_passwords_in_everything:2.4:*:*:*:*:*:*:*
cpe:2.3:a:nrl.navy:one-time_passwords_in_everything:2.32:*:*:*:*:*:*:*

History

No history.

Information

Published : 2001-12-31 05:00

Updated : 2025-04-03 01:03


NVD link : CVE-2001-1483

Mitre link : CVE-2001-1483

CVE.ORG link : CVE-2001-1483


JSON object : View

Products Affected

nrl.navy

  • one-time_passwords_in_everything
CWE
CWE-203

Observable Discrepancy