ZeroHour

CVE-2020-8228

PoC
CVSS 3.1
5.3 medium
EPSS
2%p79
Published
()
Modified
Description

A missing rate limit in the Preferred Providers app 1.7.0 allowed an attacker to set the password an uncontrolled amount of times.

Vendors
nextcloudopensuse
Products
preferred providers, backports sle, leap
Weakness
CWE-840, CWE-307
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.