CVE-2024-28022

A vulnerability exists in the FOXMAN-UN/UNEM server / APIGateway that if exploited allows a malicious user to perform an arbitrary number of authentication attempts using different passwords, and eventually gain access to the targeted account.
Configurations

No configuration.

History

13 Jun 2024, 18:36

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad en el servidor/APIGateway de FOXMAN-UN/UNEM que, si se explota, permite a un usuario malintencionado realizar un número arbitrario de intentos de autenticación utilizando diferentes contraseñas y, finalmente, obtener acceso a la cuenta objetivo.

11 Jun 2024, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-11 19:16

Updated : 2024-06-13 18:36


NVD link : CVE-2024-28022

Mitre link : CVE-2024-28022

CVE.ORG link : CVE-2024-28022


JSON object : View

Products Affected

No product.

CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts