All vulnerabilities
46 / 46
Sort
9.8
CVE-2019-17240CVE
bl-kernel/security.class.php in Bludit 3.9.2 allows attackers to bypass a brute-force protectio…
2019-01-01Pre-auth
EPSS87.5%
pct 99
9.8
CVE-2020-15906DEB
tiki-login.php in Tiki before 21.2 sets the admin password to a blank value after 50 invalid lo…
2020-01-01Pre-auth
EPSS85.6%
pct 99
9.8
CVE-2024-42850CVE
An issue in the password change function of Silverpeas v6.4.2 and lower allows for the bypassin…
2024-01-01Pre-auth
EPSS49.8%
pct 97
9.8
CVE-2020-35590CVE
LimitLoginAttempts.php in the limit-login-attempts-reloaded plugin before 2.17.4 for WordPress …
2020-01-01Pre-auth
EPSS42.9%
pct 97
7.5
CVE-2023-22960CVE
Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.
2023-01-01Pre-auth
EPSS35.5%
pct 97
8.5
CVE-2012-2441CVE
RuggedCom Rugged Operating System (ROS) before 3.3 has a factory account with a password derive…
2012-01-01
EPSS25.1%
pct 96
9.8
CVE-2001-1339CVE
Beck IPC GmbH IPC@CHIP telnet service does not delay or disconnect users from the service when …
2001-01-01Pre-auth
EPSS24.3%
pct 96
5.3
CVE-2022-29056CVE
A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet…
2022-01-01Pre-auth
EPSS24.2%
pct 96
5.3
CVE-2023-26208CVE
A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet…
2023-01-01Pre-auth
EPSS19.7%
pct 95
8.1
CVE-2021-36750CVE
ENC DataVault before 7.2 and VaultAPI v67 mishandle key derivation, making it easier for attack…
2021-01-01
EPSS19.7%
pct 95
5.3
CVE-2023-26209CVE
A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet…
2023-01-01Pre-auth
EPSS19.6%
pct 95
8.8
CVE-2019-17525CVE
The login page on D-Link DIR-615 T1 20.10 devices allows remote attackers to bypass the CAPTCHA…
2019-01-01
EPSS16.2%
pct 94
7.5
CVE-2020-27423CVE
Anuko Time Tracker v1.19.23.5311 lacks rate limit on the password reset module which allows att…
2020-01-01Pre-auth
EPSS15.0%
pct 94
9.8
CVE-2024-41276
A vulnerability in Kaiten version 57.131.12 and earlier allows attackers to bypass the PIN code…
2024-01-01Pre-auth
EPSS13.6%
pct 94
5.3
CVE-2022-30076CVE
ENTAB ERP 1.0 allows attackers to discover users' full names via a brute force attack with a se…
2022-01-01Pre-auth
EPSS12.8%
pct 94
7.5
CVE-2020-11650CVE
An issue was discovered in iXsystems FreeNAS (and TrueNAS) 11.2 before 11.2-u8 and 11.3 before …
2020-01-01Pre-auth
EPSS11.9%
pct 93
7.5
CVE-2024-57610CVE
A rate limiting issue in Sylius v2.0.2 allows a remote attacker to perform unrestricted brute-f…
2024-01-01Pre-auth
EPSS9.8%
pct 93
9.8
CVE-2023-37635CVE
UVDesk Community Skeleton v1.1.1 allows unauthenticated attackers to perform brute force attack…
2023-01-01Pre-auth
EPSS8.2%
pct 92
9.8
CVE-2023-37756CVE
I-doit pro 25 and below and I-doit open 25 and below employ weak password requirements for Admi…
2023-01-01Pre-auth
EPSS8.1%
pct 92
9.3
CVE-2024-48845CVE
Weak Password Reset Rules vulnerabilities where found providing a potiential for the storage o…
2024-01-01Pre-auth
EPSS8.1%
pct 92
5.9
CVE-2024-45589CVE
RapidIdentity LTS through 2023.0.2 and Cloud through 2024.08.0 improperly restricts excessive a…
2024-01-01Pre-auth
EPSS7.8%
pct 92
7.0
CVE-2019-18988CVE KEV
TeamViewer Desktop through 14.7.1965 allows a bypass of remote-login access control because the…
2019-01-01KEV
EPSS7.6%
pct 92
9.8
CVE-2001-1291CVE
The telnet server for 3Com hardware such as PS40 SuperStack II does not delay or disconnect rem…
2001-01-01Pre-auth
EPSS7.2%
pct 91
9.8
CVE-2023-27100CVE
Improper restriction of excessive authentication attempts in the SSHGuard component of Netgate …
2023-01-01Pre-auth
EPSS3.0%
pct 86
5.4
CVE-2025-52392
Soosyze CMS 2.0 allows brute-force login attacks via the /user/login endpoint due to missing ra…
2025-01-01Pre-auth
EPSS2.7%
pct 86
7.5
CVE-2021-3138CVE
In Discourse 2.7.0 through beta1, a rate-limit bypass leads to a bypass of the 2FA requirement …
2021-01-01Pre-auth
EPSS2.7%
pct 86
9.8
CVE-2020-15367CVE
Venki Supravizio BPM 10.1.2 does not limit the number of authentication attempts. An unauthenti…
2020-01-01Pre-auth
EPSS2.6%
pct 86
7.0
CVE-2018-1000134CVE
UnboundID LDAP SDK version from commit 801111d8b5c732266a5dbd4b3bb0b6c7b94d7afb up to commit 84…
2018-01-01
EPSS1.7%
pct 82
7.1
CVE-2025-25749DEB
An issue in HotelDruid version 3.0.7 and earlier allows users to set weak passwords due to the …
2025-01-01
EPSS1.3%
pct 80
6.8
CVE-2020-27747CVE
An issue was discovered in Click Studios Passwordstate 8.9 (Build 8973).If the user of the syst…
2020-01-01
EPSS0.7%
pct 71
6.5
CVE-2025-10658ANC
The SupportCandy – Helpdesk & Customer Support Ticket System plugin for WordPress is vulnerable…
2025-01-01Pre-auth
EPSS0.6%
pct 68
7.5
CVE-2023-0860CVE
Improper Restriction of Excessive Authentication Attempts in GitHub repository modoboa/modoboa-…
2023-01-01Pre-auth
EPSS0.5%
pct 66
7.5
CVE-2021-27188CVE
The Sovremennye Delovye Tekhnologii FX Aggregator terminal client 1 allows attackers to cause a…
2021-01-01Pre-auth
EPSS0.4%
pct 58
5.5
CVE-2024-1346CVE
Weak MySQL database root password in LaborOfficeFree affects version 19.10. This vulnerability …
2024-01-01
EPSS0.3%
pct 55
7.5
CVE-2021-43471CVE
In Canon LBP223 printers, the System Manager Mode login does not require an account password or…
2021-01-01Pre-auth
EPSS0.3%
pct 52
9.8
CVE-2023-1665CVE
Improper Restriction of Excessive Authentication Attempts in GitHub repository linagora/twake p…
2023-01-01Pre-auth
EPSS0.2%
pct 47
5.4
CVE-2023-34732CVE
An issue in the userId parameter in the change password function of Flytxt NEON-dX v0.0.1-SNAPS…
2023-01-01
EPSS0.2%
pct 36
7.5
CVE-2026-36959CVE
U-SPEED N300 router V1.0.0 does not implement rate limiting or account lockout protections on t…
2026-01-01Pre-auth
EPSS0.1%
pct 28
7.3
CVE-2025-10161
Improper Restriction of Excessive Authentication Attempts, Client-Side Enforcement of Server-Si…
2025-01-01Pre-auth
EPSS0.1%
pct 23
7.5
CVE-2026-20128CVE KEV
A vulnerability in the Data Collection Agent (DCA) feature of Cisco Catalyst SD-WAN Manager cou…
2026-01-01KEV
EPSS0.1%
pct 23
Select a vulnerability on the left to open the preview.