CVE-2022-37144

CVE-2022-37144

The PlexTrac platform prior to API version 1.17.0 does not restrict excessive MFA TOTP submission attempts. An unauthenticated remote attacker in possession of a valid username and password can bruteforce their way past MFA protections to login as the targeted user.

Source: CVE-2022-37144

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다