漏洞信息详情
Polycom ViewStation远程登录尝试无限制漏洞
- CNNVD编号:CNNVD-200301-009
- 危害等级: 中危
- CVE编号:
CVE-2002-0628
- 漏洞类型:
设计错误
- 发布时间:
2003-01-07
- 威胁类型:
远程
- 更新时间:
2005-10-20
- 厂 商:
polycom - 漏洞来源:
Discovery of this … -
漏洞简介
Polycom ViewStation 7.2.4之前版本的远程登录服务不限制登录尝试失败的次数,远程攻击者可以更容易借助强力攻击猜测用户名和密码。
漏洞公告
This issue has been addressed in ViewStation FX/VS4000 4.2. Fixes for other products are scheduled for later release. Those affected by this issue should contact the vendor about obtaining fixes.
参考网址
来源: CIAC
名称: M-123
链接:http://www.ciac.org/ciac/bulletins/m-123.shtml
来源: BID
名称: 5635
链接:http://www.securityfocus.com/bid/5635
来源: www.polycom.com
链接:http://www.polycom.com/common/pw_item_show_doc/0,,1444,00.pdf
来源: XF
名称: viewstation-telnet-login-dos(9349)
链接:http://www.iss.net/security_center/static/9349.php
来源: ISS
名称: 20020904 Multiple Remote Vulnerabilities in Polycom Videoconferencing Products
链接:http://bvlive01.iss.net/issEn/delivery/xforce/alertdetail.jsp?oid=21089
来源: XF
名称: viewstation-telnet-login-info-disclosure(44241)
链接:http://xforce.iss.net/xforce/xfdb/44241