# CVE-2002-1416

## Summary

- **CVE ID:** CVE-2002-1416
- **Severity:** UNKNOWN
- **CVSS Score:** 0.03
- **CWE:** N/A
- **Published:** Mar 18, 2003
- **Last Modified:** Mar 16, 2026

## Description

The POP3 service for WebEasyMail 3.4.2.2 and earlier generates diffferent error messages for valid and invalid usernames during authentication, which makes it easier for remote attackers to conduct brute force attacks.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://online.securityfocus.com/archive/1/288222)
- [CNA](http://www.iss.net/security_center/static/9925.php)
- [CNA](http://www.securityfocus.com/bid/5519)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.80%
- **EPSS Percentile:** 73.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._