Security Advisory

CVE-2013-3040

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-08-16 01:00:00
Last updated 2024-08-06 16:00:09
Assigner ibm
CVSS score not scored
State PUBLISHED

Description

IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP2, and 9.1 produces login-failure messages indicating whether the username or password is incorrect, which allows remote attackers to enumerate user accounts via a brute-force attack.