Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wv5c-7rvw-phjw

Опубликовано: 29 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

HCL iNotes is susceptible to a Broken Password Strength Checks vulnerability. Custom password policies are not enforced on certain iNotes forms which could allow users to set weak passwords, leading to easier cracking.

HCL iNotes is susceptible to a Broken Password Strength Checks vulnerability. Custom password policies are not enforced on certain iNotes forms which could allow users to set weak passwords, leading to easier cracking.

EPSS

Процентиль: 45%
0.00222
Низкий

7.5 High

CVSS3

Дефекты

CWE-521

Связанные уязвимости

CVSS3: 5.9
nvd
больше 3 лет назад

HCL iNotes is susceptible to a Broken Password Strength Checks vulnerability. Custom password policies are not enforced on certain iNotes forms which could allow users to set weak passwords, leading to easier cracking.

EPSS

Процентиль: 45%
0.00222
Низкий

7.5 High

CVSS3

Дефекты

CWE-521