An unauthenticated remote attacker can bypass the brute force prevention mechanism and disturb the webservice for all users.
                
            References
                    | Link | Resource | 
|---|---|
| https://www.areal-topkapi.com/en/services/security-bulletins | Vendor Advisory | 
| https://www.areal-topkapi.com/en/services/security-bulletins | Vendor Advisory | 
Configurations
                    History
                    06 May 2025, 17:24
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:a:areal-topkapi:webserv2:*:*:*:*:*:*:*:* | |
| References | () https://www.areal-topkapi.com/en/services/security-bulletins - Vendor Advisory | |
| First Time | 
        
        Areal-topkapi webserv2
         Areal-topkapi  | 
21 Nov 2024, 08:49
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://www.areal-topkapi.com/en/services/security-bulletins - | 
22 Feb 2024, 12:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2024-02-22 12:15
Updated : 2025-05-06 17:24
NVD link : CVE-2024-1104
Mitre link : CVE-2024-1104
CVE.ORG link : CVE-2024-1104
JSON object : View
Products Affected
                areal-topkapi
- webserv2
 
CWE
                
                    
                        
                        CWE-307
                        
            Improper Restriction of Excessive Authentication Attempts
