Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-2457

Опубликовано: 10 авг. 2022
Источник: nvd
CVSS3: 9.8
CVSS3: 6.5
EPSS Низкий

Описание

A flaw was found in Red Hat Process Automation Manager 7 where an attacker can benefit from a brute force attack against Administration Console as the application does not limit the number of unsuccessful login attempts.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:process_automation_manager:*:*:*:*:*:*:*:*
Версия до 7.13.2 (исключая)

EPSS

Процентиль: 44%
0.00213
Низкий

9.8 Critical

CVSS3

6.5 Medium

CVSS3

Дефекты

CWE-307
CWE-307

Связанные уязвимости

CVSS3: 9.8
redhat
больше 3 лет назад

A flaw was found in Red Hat Process Automation Manager 7 where an attacker can benefit from a brute force attack against Administration Console as the application does not limit the number of unsuccessful login attempts.

CVSS3: 9.8
github
больше 3 лет назад

A flaw was found in Red Hat Process Automation Manager 7 where an attacker can benefit from a brute force attack against Administration Console as the application does not limit the number of unsuccessful login attempts.

EPSS

Процентиль: 44%
0.00213
Низкий

9.8 Critical

CVSS3

6.5 Medium

CVSS3

Дефекты

CWE-307
CWE-307