Описание
The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it susceptible to brute-force attacks.
Ссылки
- Broken Link
- Vendor Advisory
- US Government Resource
- Not Applicable
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:avaya:media_server:-:*:*:*:*:*:*:*
cpe:2.3:a:sick:baggage_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:sick:field_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:sick:logistic_diagnostic_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:sick:package_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:sick:tire_analytics:*:*:*:*:*:*:*:*
EPSS
Процентиль: 28%
0.00354
Низкий
5.3 Medium
CVSS3
6.5 Medium
CVSS3
Дефекты
CWE-307
Связанные уязвимости
CVSS3: 5.3
github
около 1 года назад
The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it susceptible to brute-force attacks.
EPSS
Процентиль: 28%
0.00354
Низкий
5.3 Medium
CVSS3
6.5 Medium
CVSS3
Дефекты
CWE-307