CVE-2024-45788
CVE-2024-45788
Título es
CVE-2024-45788
Mié, 11/09/2024 – 12:15
Tipo
CWE-799
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-45788
Descripción en
This vulnerability exists in Reedos aiM-Star version 2.0.1 due to missing rate limiting on OTP requests in certain API endpoints. An authenticated remote attacker could exploit this vulnerability by sending multiple OTP request through vulnerable API endpoints which could lead to the OTP bombing/flooding on the targeted system.
11/09/2024
11/09/2024
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
Pendiente de análisis
Enviar en el boletín
Off