Improper Restriction of Excessive Authentication Attempts in GitHub repository heroiclabs/nakama prior to 3.13.0. This results in login brute-force attacks.
References
Link | Resource |
---|---|
https://github.com/heroiclabs/nakama/commit/e2e02fce80ff33ce45f8a6ebc0b7a99ee0b03824 | Patch Third Party Advisory |
https://huntr.dev/bounties/3055b3f5-6b80-4d47-8e00-3500dfb458bc | Exploit Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: @huntrdev
Published: 2022-07-05T18:25:11
Updated: 2022-07-06T08:30:12
Reserved: 2022-07-05T00:00:00
Link: CVE-2022-2321
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-07-05T19:15:07.817
Modified: 2022-07-14T21:59:29.610
Link: CVE-2022-2321
JSON object: View
Redhat Information
No data.
CWE