CVE-2023-33754
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/06/2023
Last modified:
09/01/2025
Description
The captive portal in Inpiazza Cloud WiFi versions prior to v4.2.17 does not enforce limits on the number of attempts for password recovery, allowing attackers to brute force valid user accounts to gain access to login credentials.
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:inpiazza:cloud_wifi:*:*:*:*:*:*:*:* | 4.2.17 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



