CVE-2024-9928

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/11/2024
Last modified:
26/11/2024

Description

A vulnerability exists in NSD570 login panel that does not restrict excessive authentication attempts. If exploited, this could<br /> cause account takeover and unauthorized access to the system<br /> when an attacker conducts brute-force attacks against the<br /> equipment login. Note that the system supports only one concurrent session and implements a delay of more than a second<br /> between failed login attempts making it difficult to automate the<br /> attacks.