Описание
Pedro Lineu Orso chetcpasswd 2.3.3 does not have a rate limit for client requests, which might allow remote attackers to determine passwords via a dictionary attack.
Ссылки
- Patch
- Mailing List
- Vendor Advisory
- Vendor Advisory
- Patch
- Mailing List
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:chetcpasswd:chetcpasswd:2.3.3:*:*:*:*:*:*:*
EPSS
Процентиль: 73%
0.00877
Низкий
7.5 High
CVSS2
Дефекты
CWE-399
Связанные уязвимости
debian
почти 19 лет назад
Pedro Lineu Orso chetcpasswd 2.3.3 does not have a rate limit for clie ...
github
больше 3 лет назад
Pedro Lineu Orso chetcpasswd 2.3.3 does not have a rate limit for client requests, which might allow remote attackers to determine passwords via a dictionary attack.
EPSS
Процентиль: 73%
0.00877
Низкий
7.5 High
CVSS2
Дефекты
CWE-399