PT-2024-39943 · Nsd570 · Nsd570
Published
2024-11-26
·
Updated
2024-11-26
·
CVE-2024-9928
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
NSD570 (affected versions not specified)
Description
A vulnerability exists in the login panel of NSD570 that does not restrict excessive authentication attempts. If exploited, this could cause account takeover and unauthorized access to the system when an attacker conducts brute-force attacks against the equipment login. The system supports only one concurrent session and implements a delay of more than a second between failed login attempts, making it difficult to automate the attacks.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Improper Restriction of Excessive Authentication Attempts
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nsd570