{ "schema_version": "1.4.0", "id": "GHSA-7c33-39g7-9rjm", "modified": "2025-04-09T03:41:50Z", "published": "2022-05-01T18:06:58Z", "aliases": [ "CVE-2007-2768" ], "details": "OpenSSH, when using OPIE (One-Time Passwords in Everything) for PAM, allows remote attackers to determine the existence of certain user accounts, which displays a different response if the user account exists and is configured to use one-time passwords (OTP), a similar issue to CVE-2007-2243.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-2768" }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20191107-0002" }, { "type": "WEB", "url": "http://archives.neohapsis.com/archives/fulldisclosure/2007-04/0635.html" }, { "type": "WEB", "url": "http://www.osvdb.org/34601" } ], "database_specific": { "cwe_ids": [ "CWE-200" ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2007-05-21T20:30:00Z" } }