A CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that
could cause account takeover when a brute force attack is performed on the account.



Affected Products: NetBotz 4 - 355/450/455/550/570 (V4.7.0

and prior)

Project Subscriptions

Vendors Products
Schneider-electric Subscribe
Netbotz 355 Subscribe
Netbotz 355 Firmware Subscribe
Netbotz 450 Subscribe
Netbotz 450 Firmware Subscribe
Netbotz 455 Subscribe
Netbotz 455 Firmware Subscribe
Netbotz 550 Subscribe
Netbotz 550 Firmware Subscribe
Netbotz 570 Subscribe
Netbotz 570 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-46416 A CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that could cause account takeover when a brute force attack is performed on the account. Affected Products: NetBotz 4 - 355/450/455/550/570 (V4.7.0 and prior)
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 05 Feb 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2025-02-05T20:24:49.039Z

Reserved: 2022-10-17T16:42:12.652Z

Link: CVE-2022-43377

cve-icon Vulnrichment

Updated: 2024-08-03T13:32:57.395Z

cve-icon NVD

Status : Modified

Published: 2023-04-18T20:15:10.367

Modified: 2024-11-21T07:26:21.907

Link: CVE-2022-43377

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses