Vulnerabilities > CVE-2001-1528 - Information Exposure Through Discrepancy vulnerability in Amtote Homebet

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
amtote
CWE-203
exploit available

Summary

AmTote International homebet program returns different error messages when invalid account numbers and PIN codes are provided, which allows remote attackers to determine the existence of valid account numbers via a brute force attack.

Vulnerable Configurations

Part Description Count
Application
Amtote
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionAmtote Homebet 0 Account Information Brute Force Vulnerability. CVE-2001-1528. Remote exploits for multiple platform
idEDB-ID:21116
last seen2016-02-02
modified2001-09-28
published2001-09-28
reporterGary O'Leary-Steele
sourcehttps://www.exploit-db.com/download/21116/
titleAmtote Homebet - Account Information Brute Force Vulnerability