CVE-2024-28825
Brute-force protection ineffective for some login methods
Improper restriction of excessive authentication attempts on some authentication methods in Checkmk before 2.3.0b5 (beta), 2.2.0p26, 2.1.0p43, and in Checkmk 2.0.0 (EOL) facilitates password brute-forcing.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
Checkmk GmbH · CheckmkWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://checkmk.com/werk/15198