CVE-2024-9928
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/11/2024
Last modified:
26/11/2024
Description
A vulnerability exists in NSD570 login panel that does not restrict excessive authentication attempts. If exploited, this could<br />
cause account takeover and unauthorized access to the system<br />
when an attacker conducts brute-force attacks against the<br />
equipment login. Note that the system supports only one concurrent session and implements a delay of more than a second<br />
between failed login attempts making it difficult to automate the<br />
attacks.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM