CVE-2001-1483
Last modified
CVE-2001-1483 is a vulnerability of currently unknown severity. One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user accounts by printing random passphrases if the user account does not exist and static passphrases if the user account does exist.. EPSS estimates a 3.67% chance of exploitation in the next 30 days.
Description
One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user accounts by printing random passphrases if the user account does not exist and static passphrases if the user account does exist.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Nrl.Navy | One-Time Passwords In Everything | 2.4 |
| Nrl.Navy | One-Time Passwords In Everything | 2.32 |
References
- http://www.securityfocus.com/archive/1/20011115221226.7C93E186B0%40atlas.dgp.toronto.eduBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/3549Broken Link, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7572Third Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/20011115221226.7C93E186B0%40atlas.dgp.toronto.eduBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/3549Broken Link, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7572Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2001-1483?
How severe is CVE-2001-1483?
How do I fix CVE-2001-1483?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2001
- CVE-2001-1477The Domain gateway in BEA Tuxedo 7.1 does not perform author…
- CVE-2001-1478Buffer overflow in xlock in UnixWare 7.1.0 and 7.1.1 and Ope…
- CVE-2001-1479smcboot in Sun SMC (Sun Management Center) 2.0 in Solaris 8 …
- CVE-2001-1480Java Runtime Environment (JRE) and SDK 1.2 through 1.3.0_04 …
- CVE-2001-1481Xitami 2.4 through 2.5 b4 stores the Administrator password …9.8
- CVE-2001-1482SQL injection vulnerability in bb_memberlist.php for phpBB 1…
- CVE-2001-1484Alcatel ADSL modems allow remote attackers to access the Tri…
- CVE-2001-1487popauth utility in Qualcomm Qpopper 4.0 and earlier allows l…
- CVE-2001-1488Open Projects Network Internet Relay Chat (IRC) daemon u2.10…
- CVE-2001-1489Microsoft Internet Explorer 6 allows remote attackers to cau…
- CVE-2001-1490Mozilla 0.9.6 allows remote attackers to cause a denial of s…
- CVE-2001-1491Opera 5.11 allows remote attackers to cause a denial of serv…
Are you affected by CVE-2001-1483?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
