CVE-2005-0798
Summary
| CVE | CVE-2005-0798 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-03-15 05:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Novell iChain Mini FTP Server 2.3, and possibly earlier versions, does not limit the number of incorrect logins, which makes it easier for remote attackers to conduct brute force login attacks. |
Risk And Classification
Primary CVSS: v2.0 7.5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Novell | Ichain | 2.2 | All | All | All |
| Application | Novell | Ichain | 2.2 | sp1 | All | All |
| Application | Novell | Ichain | 2.2 | sp1a | All | All |
| Application | Novell | Ichain | 2.2 | sp2 | All | All |
| Application | Novell | Ichain | 2.2 | sp3 | All | All |
| Application | Novell | Ichain | 2.2.113 | All | All | All |
| Application | Novell | Ichain | 2.3 | All | All | All |
| Application | Novell | Ichain | 2.3 | sp2 | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.osvdb.org/14648 | af854a3a-2127-422b-91ae-364da2661108 | www.osvdb.org | |
| Secunia - Advisories - Novell iChain miniFTP Server Brute Force Weakness | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| ISR, Infobyte Security Research | af854a3a-2127-422b-91ae-364da2661108 | www.infobyte.com.ar | Vendor Advisory |
| SecurityTracker.com Archives - Novell iChain Mini FTP Server Does Not Limit Invalid Authentication Attempts | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | |
| support.novell.com/cgi-bin/search/searchtid.cgi | af854a3a-2127-422b-91ae-364da2661108 | support.novell.com | Vendor Advisory |
| '[ISR] - Novell iChain Mini FTP Server Bruteforce Problem' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.