Samba Web Administration Tool (SWAT) in Samba 2.0.7 does not log login attempts in which the username is correct but the password is wrong, which allows remote attackers to conduct brute force password guessing attacks.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2000-10/0430.html | mailing list exploit patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/5442 | vdb entry |
http://www.securityfocus.com/bid/1873 | exploit vdb entry vendor advisory |