Falhas do tipo CWE-307

411 resultados
CVE-2026-40485MEDIUMChurchCRM: Username Enumeration via Differential Response in Public Login APIEPSS 0.3%CVE-2026-31851HIGHLack of Rate Limiting Enables Brute-Force Attacks in Nexxt Nebula 300+EPSS 0.3%CVE-2026-56450MEDIUMAIL Framework - Missing Rate Limiting Enables Brute-Force Attacks Against Two-Factor Authentication CodesEPSS 0.3%CVE-2026-27753MEDIUMSODOLA SL902-SWTGW124AS <= 200.1.20 Improper Login Rate LimitingEPSS 0.3%CVE-2025-46414CRITICALEG4 Electronics EG4 Inverters Improper Restriction of Excessive Authentication AttemptsEPSS 0.3%CVE-2026-41893HIGHSignal K Server's WebSocket Login Endpoint Lacks Rate Limiting (Credential Brute-Force)EPSS 0.3%CVE-2025-2413HIGHOTP Bypass in Akinsoft's ProKuaforEPSS 0.3%CVE-2025-2415HIGHOTP Bypass in Akinsoft's MyRezztaEPSS 0.3%CVE-2024-49342HIGHIBM Informix Dynamic Server information disclosureEPSS 0.3%CVE-2025-2412HIGHOTP Bypass in Akinsoft's QR MenuEPSS 0.3%CVE-2025-2414HIGHOTP Bypass in Akinsoft's OctoCloudEPSS 0.3%CVE-2025-2416HIGHOTP Bypass in Akinsoft's LimonDeskEPSS 0.3%CVE-2026-35675HIGHphpMyFAQ - Authentication Bypass via Missing Password Reset Token in /api/user/password/updateEPSS 0.3%CVE-2025-42615HIGHImproper Restriction of Excessive Authentication Attempts vulnerability in CIRCL Vulnerability-LookupEPSS 0.3%CVE-2025-1928CRITICALImproper Authentication in Restajet's Online Food Delivery SystemEPSS 0.3%CVE-2026-33763MEDIUMAVideo has an Unauthenticated Video Password Brute-Force Vulnerability via Unrate-Limited Boolean OracleEPSS 0.3%CVE-2025-49186MEDIUMNo brute-force protectionEPSS 0.3%CVE-2025-8679HIGHExtremeGuest Essentials Captive Portal Unauthenticated Brute ForceEPSS 0.3%CVE-2026-22616MEDIUMEaton Intelligent Power Protector (IPP) software allows repeated authentication attempts against the web interface login page due to insuffiEPSS 0.3%CVE-2025-1496MEDIUMImproper Authentication in BG-TEK's Coslat HotspotEPSS 0.3%