CVE-2001-1571

Windows XP - Unauthenticated User Account Name Exposure via Remote Desktop Cleartext Transmission

Title source: llm
STIX 2.1

Description

The Remote Desktop client in Windows XP sends the most recent user account name in cleartext, which could allow remote attackers to obtain terminal server user account names via sniffing.

References (3)

Core 3
Core References
Third Party Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/7732.php
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/3720
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2001-12/0213.html

Scores

EPSS 0.1309
EPSS Percentile 96.0%

Details

Status published
Products (1)
microsoft/windows_xp (2 CPE variants)
Published Dec 31, 2001
Tracked Since Feb 18, 2026