CVE-2023-25156

CVE-2023-25156

Kiwi TCMS, an open source test management system, does not impose rate limits in versions prior to 12.0. This makes it easier to attempt brute-force attacks against the login page. Users should upgrade to v12.0 or later to receive a patch. As a workaround, users may install and configure a rate-limiting proxy in front of Kiwi TCMS.

Source: CVE-2023-25156

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다