An attacker can freely brute force username and password and can takeover any account. An attacker could easily guess user passwords and gain access to user and administrative accounts.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6490 | An attacker can freely brute force username and password and can takeover any account. An attacker could easily guess user passwords and gain access to user and administrative accounts. |
Github GHSA |
GHSA-5w5x-q9p5-9qg3 | OctoPrint does not have rate limiting on the login page |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: @huntrdev
Published:
Updated: 2024-08-03T00:52:58.435Z
Reserved: 2022-08-15T00:00:00
Link: CVE-2022-2822
No data.
Status : Modified
Published: 2022-08-15T11:21:32.300
Modified: 2024-11-21T07:01:45.353
Link: CVE-2022-2822
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA