Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Due to insufficient server-side login-attempt limit enforcement, a vulnerability in /account/login in Huntflow Enterprise before 3.10.14 could allow an unauthenticated, remote user to perform multiple login attempts for brute-force password guessing.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Huntflow Enterprise 权限许可和访问控制问题漏洞
Vulnerability Description
Huntflow Enterprise是俄罗斯Huntflow公司的一个高效招聘软件。 Huntflow Enterprise 存在权限许可和访问控制问题漏洞,该漏洞源于服务器端登录尝试限制实施不足,Huntflow Enterprise 的 /account/login 中的漏洞可能允许未经身份验证的远程用户执行多次登录尝试以进行暴力密码猜测。
CVSS Information
N/A
Vulnerability Type
N/A