PT-2024-39943 · Nsd570 · Nsd570

Published

2024-11-26

·

Updated

2024-11-26

·

CVE-2024-9928

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions NSD570 (affected versions not specified)
Description A vulnerability exists in the login panel of NSD570 that does not restrict excessive authentication attempts. If exploited, this could cause account takeover and unauthorized access to the system when an attacker conducts brute-force attacks against the equipment login. The system supports only one concurrent session and implements a delay of more than a second between failed login attempts, making it difficult to automate the attacks.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Restriction of Excessive Authentication Attempts

Weakness Enumeration

Related Identifiers

CVE-2024-9928

Affected Products

Nsd570