PT-2023-16567 · Modoboa · Modoboa-Installer

Published

2023-02-16

·

Updated

2023-02-24

·

CVE-2023-0860

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions modoboa/modoboa-installer versions prior to 2.0.4
Description The issue is related to improper restriction of excessive authentication attempts. This can potentially lead to exploitation.
Recommendations For versions prior to 2.0.4, update to version 2.0.4 or later to resolve the issue.

Exploit

Fix

Improper Restriction of Excessive Authentication Attempts

Weakness Enumeration

Related Identifiers

CVE-2023-0860
GHSA-Q9WW-GJPW-P9G6

Affected Products

Modoboa-Installer