CVE-2024-9928

A vulnerability exists in NSD570 login panel that does not restrict excessive authentication attempts. If exploited, this could cause account takeover and unauthorized access to the system when an attacker conducts brute-force attacks against the equipment login. Note that the system supports only one concurrent session and implements a delay of more than a second between failed login attempts making it difficult to automate the attacks.
Configurations

No configuration.

History

26 Nov 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-26 14:15

Updated : 2024-11-26 14:15


NVD link : CVE-2024-9928

Mitre link : CVE-2024-9928

CVE.ORG link : CVE-2024-9928


JSON object : View

Products Affected

No product.

CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts