Unrated severityNVD Advisory· Published Dec 21, 2006· Updated Apr 23, 2026
CVE-2006-6682
CVE-2006-6682
Description
Pedro Lineu Orso chetcpasswd 2.3.3 provides a different error message when a request with a valid username fails, compared to a request with an invalid username, which allows remote attackers to determine valid usernames on the system.
Affected products
1- cpe:2.3:a:chetcpasswd_project:chetcpasswd:2.3.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- bugs.debian.org/cgi-bin/bugreport.cginvdThird Party Advisory
- secunia.com/advisories/22967nvdPermissions RequiredThird Party Advisory
- www.osvdb.org/30545nvdBroken LinkPermissions RequiredThird Party Advisory
- www.securityfocus.com/bid/21102nvdThird Party AdvisoryVDB Entry
- marc.infonvdMailing List
- exchange.xforce.ibmcloud.com/vulnerabilities/30454nvdVDB Entry
News mentions
0No linked articles in our index yet.