A vulnerability has been identified in Location Intelligence family (All versions < V4.4). Affected products do not properly enforce restriction of excessive authentication attempts. This could allow an unauthenticated remote attacker to conduct brute force attacks against legitimate user passwords.
Metrics
Affected Vendors & Products
References
History
Wed, 14 Aug 2024 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Siemens
Siemens location Intelligence |
|
| CPEs | cpe:2.3:a:siemens:location_intelligence:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Siemens
Siemens location Intelligence |
Tue, 13 Aug 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 13 Aug 2024 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been identified in Location Intelligence family (All versions < V4.4). Affected products do not properly enforce restriction of excessive authentication attempts. This could allow an unauthenticated remote attacker to conduct brute force attacks against legitimate user passwords. | |
| Weaknesses | CWE-307 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: siemens
Published: 2024-08-13T07:54:19.932Z
Updated: 2024-08-13T17:54:30.651Z
Reserved: 2024-07-19T07:26:24.367Z
Link: CVE-2024-41682
Updated: 2024-08-13T17:54:22.777Z
Status : Analyzed
Published: 2024-08-13T08:15:12.167
Modified: 2024-08-14T18:37:24.413
Link: CVE-2024-41682
No data.