Search/CVE-2003-0637
CVE

CVE-2003-0637

Novell iChain 2.2 before Support Pack 1 uses a shorter timeout for a non-existent user than a valid user, which makes it easier for remote attackers to guess usernames and conduct brute force password guessing.

CVSS v3.1
EPSS
1.48%
probability of exploitation in 30 days
CISA KEV
Not listed
no confirmed exploitation reported
News coverage
0
sources referencing this CVE
Connections
2 relationships
Timeline
disclosure → media coverage
Aug 27, 2003
Disclosure — published as a CVE record. · last revised by NVD Apr 16, 2026