漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
CWE-307 Improper Restriction of Excessive Authentication Attempts vulnerability exists that would allow an attacker to gain access to the user account by performing an arbitrary number of authentication attempts with different credentials on a sequence of requests to multiple endpoints.
CVSS Information
N/A
Vulnerability Type
过多认证尝试的限制不恰当
Vulnerability Title
Schneider Electric PowerChute Serial Shutdown 安全漏洞
Vulnerability Description
Schneider Electric PowerChute Serial Shutdown是法国施耐德电气(Schneider Electric)公司的一个 UPS 管理、正常关机和能源管理软件。 Schneider Electric PowerChute Serial Shutdown存在安全漏洞,该漏洞源于对过多身份验证尝试的限制不当,可能导致攻击者通过向多个端点发起一系列请求进行任意次身份验证尝试来获取用户账户访问权限。
CVSS Information
N/A
Vulnerability Type
N/A