Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mvx9-f55c-65h5

Опубликовано: 22 янв. 2022
Источник: github
Github: Не прошло ревью

Описание

Dell EMC AppSync versions 3.9 to 4.3 contain an Improper Restriction of Excessive Authentication Attempts Vulnerability that can be exploited from UI and CLI. An adjacent unauthenticated attacker could potentially exploit this vulnerability, leading to password brute-forcing. Account takeover is possible if weak passwords are used by users.

Dell EMC AppSync versions 3.9 to 4.3 contain an Improper Restriction of Excessive Authentication Attempts Vulnerability that can be exploited from UI and CLI. An adjacent unauthenticated attacker could potentially exploit this vulnerability, leading to password brute-forcing. Account takeover is possible if weak passwords are used by users.

EPSS

Процентиль: 64%
0.00464
Низкий

Дефекты

CWE-307

Связанные уязвимости

CVSS3: 8.1
nvd
около 4 лет назад

Dell EMC AppSync versions 3.9 to 4.3 contain an Improper Restriction of Excessive Authentication Attempts Vulnerability that can be exploited from UI and CLI. An adjacent unauthenticated attacker could potentially exploit this vulnerability, leading to password brute-forcing. Account takeover is possible if weak passwords are used by users.

EPSS

Процентиль: 64%
0.00464
Низкий

Дефекты

CWE-307