Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Wind-Cyber

#26114of 53,624
9.8Total CVSS
Vulnerabilities · 1
PT-2021-10606
9.8
2021-12-27
Cscms · Cscms · CVE-2020-21238
Name of the Vulnerable Software and Affected Versions: CSCMS version 4.0 Description: An issue in the user login box allows attackers to hijack user accounts via brute force attacks. Recommendations: For CSCMS version 4.0, consider implementing rate limiting or IP blocking to mitigate the risk of brute force attacks. As a temporary workaround, restrict access to the user login box until a patch is available.