ZeroHour

CVE-2023-33754

PoC
CVSS 3.1
6.5 medium
EPSS
<1%p50
Published
()
Modified
Description

The captive portal in Inpiazza Cloud WiFi versions prior to v4.2.17 does not enforce limits on the number of attempts for password recovery, allowing attackers to brute force valid user accounts to gain access to login credentials.

Vendors
inpiazza
Products
cloud wifi
Weakness
CWE-307
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.