CVE-1999-1074: Webmin before 0.5 does not restrict the number of invalid passwords that are entered for a valid username, which could a

Published n/a Updated 2026-08-21T04:30:52.720Z

Summary

Webmin before 0.5 does not restrict the number of invalid passwords that are entered for a valid username, which could allow remote attackers to gain privileges via brute force password cracking.

Severity

UNKNOWN

Source Attribution

Source: NVD · Updated: 2026-08-21T04:30:52.720Z · Confidence: high

Impact

Based on CVSS vector: n/a — assess confidentiality, integrity, and availability impact via the official vector documentation.

Affected Software

Fix

Upgrade affected software to the fixed version identified above. Apply vendor patches and monitor advisories before exposed systems go unpatched.

References