Vulnerability Description
The POP3 server in IBM iSeries AS/400 returns different error messages when the user exists or not, which allows remote attackers to determine valid user IDs on the server.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Iseries As 400 | All versions |
References
- http://marc.info/?l=bugtraq&m=111358863001693&w=2
- http://www.securityfocus.com/bid/13156
- http://marc.info/?l=bugtraq&m=111358863001693&w=2
- http://www.securityfocus.com/bid/13156
FAQ
What is CVE-2005-1133?
CVE-2005-1133 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The POP3 server in IBM iSeries AS/400 returns different error messages when the user exists or not, which allows remote attackers to determine valid user IDs on the server.
How severe is CVE-2005-1133?
CVE-2005-1133 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-1133?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Iseries As 400.