CVE-2024-47088

This vulnerability exists in Apex Softcell LD Geo due to missing restrictions for excessive failed authentication attempts on its API based login. A remote attacker could exploit this vulnerability by conducting a brute force attack on login OTP, which could lead to gain unauthorized access to other user accounts.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apexsoftcell:ld_geo:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:apexsoftcell:ld_dp_back_office:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-09-19 07:15

Updated : 2024-09-26 19:12


NVD link : CVE-2024-47088

Mitre link : CVE-2024-47088

CVE.ORG link : CVE-2024-47088


JSON object : View

Products Affected

apexsoftcell

  • ld_dp_back_office
  • ld_geo
CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts