PT-2008-2529 · Ipdiva · Ipdiva Ssl Vpn Server

Eagle

·

Publicado

2008-02-22

·

Atualizado

2018-10-15

·

CVE-2008-0915

CVSS v2.0

6.4

Média

VetorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions IPdiva SSL VPN Server versions 2.2 before 2.2.8.84 IPdiva SSL VPN Server versions 2.3 before 2.3.2.14
Description The issue allows remote attackers to conduct brute force attacks by manipulating the cookie's value that stores the number of remaining allowed login attempts.
Recommendations For IPdiva SSL VPN Server versions 2.2 before 2.2.8.84, update to version 2.2.8.84 or later. For IPdiva SSL VPN Server versions 2.3 before 2.3.2.14, update to version 2.3.2.14 or later.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2008-0915

Produtos afetados

Ipdiva Ssl Vpn Server