Описание
Missing password strength checks on some forms in Plone 4.3 through 5.2.0 allow users to set weak passwords, leading to easier cracking.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | conga | Out of support scope |
Показывать по
10
Дополнительная информация
Статус:
Low
Дефект:
CWE-522
https://bugzilla.redhat.com/show_bug.cgi?id=1798203plone: missing password strength checks on some forms
7.5 High
CVSS3
Связанные уязвимости
CVSS3: 7.5
nvd
около 6 лет назад
Missing password strength checks on some forms in Plone 4.3 through 5.2.0 allow users to set weak passwords, leading to easier cracking.
7.5 High
CVSS3