Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x7gg-cwpw-28p9

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has weak password requirements combined with improper restriction of excessive authentication attempts, which could allow a remote attacker to discover user credentials and obtain access via a brute force attack.

The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has weak password requirements combined with improper restriction of excessive authentication attempts, which could allow a remote attacker to discover user credentials and obtain access via a brute force attack.

EPSS

Процентиль: 77%
0.01043
Низкий

Дефекты

CWE-521

Связанные уязвимости

CVSS3: 9.8
nvd
почти 6 лет назад

The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has weak password requirements combined with improper restriction of excessive authentication attempts, which could allow a remote attacker to discover user credentials and obtain access via a brute force attack.

EPSS

Процентиль: 77%
0.01043
Низкий

Дефекты

CWE-521