Podatność CVE-2024-22425


Publikacja: 2024-02-16

Opis:

Dell RecoverPoint for Virtual Machines 5.3.x contains a brute force/dictionary attack vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to launch a brute force attack or a dictionary attack against the RecoverPoint login form. This allows attackers to brute-force the password of valid users in an automated manner.

Typ:

CWE-307

(Improper Restriction of Excessive Authentication Attempts)

 Referencje:
https://www.dell.com/support/kbdoc/en-us/000222133/dsa-2024-092-security-update-for-dell-recoverpoint-for-virtual-machines-multiple-vulnerabilities

Copyright 2024, cxsecurity.com

 

Back to Top