CVE-2021-22530 - CERT CVE
ID CVE-2021-22530
Sažetak A vulnerability identified in NetIQ Advance Authentication that doesn't enforce account lockout when brute force attack is performed on API based login. This issue may lead to user account compromise if successful or may impact server performance. This issue impacts all NetIQ Advance Authentication before 6.3.5.1
Reference
CVSS
Base: 9.9
Impact: 5.3
Exploitability:3.9
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
HIGH LOW LOW
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:L
Zadnje važnije ažuriranje 13-09-2024 - 17:15
Objavljeno 28-08-2024 - 07:15