Beck IPC GmbH IPC@CHIP telnet service does not delay or disconnect users from the service when bad passwords are entered, which makes it easier for remote attackers to conduct brute force password guessing attacks.
The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/198979 | third party advisory us government resource |
http://www.securityfocus.com/archive/1/186418 | mailing list vdb entry third party advisory broken link |
http://www.securityfocus.com/bid/2771 | patch vendor advisory exploit vdb entry third party advisory broken link |
http://cert.uni-stuttgart.de/archive/bugtraq/2001/06/msg00010.html | mailing list broken link |
http://www.iss.net/security_center/static/6605.php | vdb entry broken link vendor advisory |