CVE-2003-0190 describes a timing attack vulnerability in OpenSSH-portable 3.6.1p1 and earlier, specifically when PAM support is enabled. This flaw allows remote attackers to enumerate valid usernames by observing the immediate error message sent when a non-existent user attempts to authenticate. With a CVSS score of 5.0, this vulnerability is of medium severity, requiring no authentication and low attack complexity, potentially leading to information disclosure (username enumeration). While not listed on the KEV catalog, exploit code is publicly available via Metasploit and ExploitDB, and the vulnerability has garnered significant community discussion, indicating its potential for exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.6.1CPE matchmatch criteria | cpe:2.3:a:openbsd:openssh:*:*:*:*:*:*:*:* | ||
3.6.1CPE matchmatch criteria | cpe:2.3:a:openbsd:openssh:3.6.1:p1:*:*:*:*:*:* | ||
1.2CPE matchmatch criteria | cpe:2.3:a:openpkg:openpkg:1.2:*:*:*:*:*:*:* | ||
1.3CPE matchmatch criteria | cpe:2.3:a:openpkg:openpkg:1.3:*:*:*:*:*:*:* | ||
< 3.2.7CPE matchmatch criteria | cpe:2.3:o:siemens:scalance_x204rna_ecc_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.