High severity7.5NVD Advisory· Published Dec 31, 2002· Updated Apr 16, 2026
CVE-2002-1657
CVE-2002-1657
Description
PostgreSQL uses the username for a salt when generating passwords, which makes it easier for remote attackers to guess passwords via a brute force attack.
Affected products
1- cpe:2.3:a:postgresql:postgresql:7.3.19:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- archives.postgresql.org/pgsql-admin/2002-08/msg00253.phpnvdMailing List
- marc.infonvdMailing List
- marc.infonvdMailing List
- exchange.xforce.ibmcloud.com/vulnerabilities/20215nvdBroken LinkVDB Entry
News mentions
0No linked articles in our index yet.