积极预防 及时发现
快速响应 力保恢复
Samba 2.0.7中的Samba网络管理工具Samba Web Administration T...
发布时间:2000-12-19 信息来源:管理员

CNCVE编号:CNCVE-20000937 CVE编号:CVE-2000-0937 安全级别:中 漏洞中文描述: Samba 2.0.7中的Samba网络管理工具Samba Web Administration Tool (SWAT)没有把用户名正确而口令错误的注册尝试记入日志,这导致远程攻击者可以来进行强行口令猜测攻击。 漏洞英文描述: Samba Web Administration Tool (SWAT) in Samba 2.0.7 does not log login attempts in which the username is correct but the password is wrong, which allows remote attackers to conduct brute force password guessing attacks. 漏洞参考: BUGTRAQ:20001030 Samba 2.0.7 SWAT vulnerabilities | URL:http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html | BID:1873 | URL:http://www.securityfocus.com/bid/1873 | XF:samba-swat-brute-force | URL:http://xforce.iss.net/sta 系统类型:其他 漏洞类型:输入有效性检查错误