Pedro Lineu Orso chetcpasswd 2.3.3 does not have a rate limit for client requests, which might allow remote attackers to determine passwords via a dictionary attack.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Chetcpasswd |
Chetcpasswd |
2.3.3 (including) |
2.3.3 (including) |
References