Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-845j-gc55-fc8w

Опубликовано: 03 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.9

Описание

PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticated remote attacker can exploit this vulnerability to perform unrestricted brute-force or credential-stuffing attacks without triggering account lockout or rate-limiting mechanisms in some configurations.

PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticated remote attacker can exploit this vulnerability to perform unrestricted brute-force or credential-stuffing attacks without triggering account lockout or rate-limiting mechanisms in some configurations.

EPSS

Процентиль: 33%
0.0039
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-307

Связанные уязвимости

nvd
около 2 месяцев назад

PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticated remote attacker can exploit this vulnerability to perform unrestricted brute-force or credential-stuffing attacks without triggering account lockout or rate-limiting mechanisms in some configurations.

EPSS

Процентиль: 33%
0.0039
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-307