CVE-2001-1528

AmTote International homebet program returns different error messages when invalid account numbers and PIN codes are provided, which allows remote attackers to determine the existence of valid account numbers via a brute force attack.
References
Link Resource
http://archives.neohapsis.com/archives/bugtraq/2001-09/0235.html Broken Link Vendor Advisory
http://www.iss.net/security_center/static/7185.php Broken Link
http://www.securityfocus.com/bid/3371 Broken Link Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:amtote:homebet:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2001-12-31 05:00

Updated : 2024-02-14 15:17


NVD link : CVE-2001-1528

Mitre link : CVE-2001-1528

CVE.ORG link : CVE-2001-1528


JSON object : View

Products Affected

amtote

  • homebet
CWE
CWE-203

Observable Discrepancy