A vulnerability exists in the UNEM server / APIGateway that if exploited allows a malicious user to perform an arbitrary number of
authentication attempts using different passwords, and eventually
gain access to other components in the same security realm using
the targeted account.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2024-06-11 19:16
Updated : 2024-11-21 09:05
NVD link : CVE-2024-28022
Mitre link : CVE-2024-28022
CVE.ORG link : CVE-2024-28022
JSON object : View
Products Affected
hitachienergy
- unem
- foxman-un
CWE
CWE-307
Improper Restriction of Excessive Authentication Attempts