Vulnerabilities > CVE-2002-0212 - Information Disclosure vulnerability in Hosting Controller
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
The login for Hosting Controller 1.1 through 1.4.1 returns different error messages when a valid or invalid user is provided, which allows remote attackers to determine the existence of valid usernames and makes it easier to conduct a brute force attack.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 5 |