7.5
CVE-2020-11650
- EPSS 11.92%
- Veröffentlicht 08.04.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 04:58:19
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An issue was discovered in iXsystems FreeNAS (and TrueNAS) 11.2 before 11.2-u8 and 11.3 before 11.3-U1. It allows a denial of service. The login authentication component has no limits on the length of an authentication message or the rate at which such messages are sent.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ixsystems ≫ Freenas Firmware Version11.2 Update-
Ixsystems ≫ Freenas Firmware Version11.2 Updateu1
Ixsystems ≫ Freenas Firmware Version11.2 Updateu2
Ixsystems ≫ Freenas Firmware Version11.2 Updateu2.1
Ixsystems ≫ Freenas Firmware Version11.2 Updateu3
Ixsystems ≫ Freenas Firmware Version11.2 Updateu4
Ixsystems ≫ Freenas Firmware Version11.2 Updateu4.1
Ixsystems ≫ Freenas Firmware Version11.2 Updateu5
Ixsystems ≫ Freenas Firmware Version11.2 Updateu5.1
Ixsystems ≫ Freenas Firmware Version11.2 Updateu6
Ixsystems ≫ Freenas Firmware Version11.2 Updateu6.1
Ixsystems ≫ Freenas Firmware Version11.2 Updateu7
Ixsystems ≫ Freenas Firmware Version11.3 Update-
Ixsystems ≫ Freenas Firmware Version11.3 Updatealpha1
Ixsystems ≫ Freenas Firmware Version11.3 Updatealpha2
Ixsystems ≫ Freenas Firmware Version11.3 Updatebeta1
Ixsystems ≫ Freenas Firmware Version11.3 Updaterc1
Ixsystems ≫ Freenas Firmware Version11.3 Updaterc2
Ixsystems ≫ Truenas Firmware Version11.2 Update-
Ixsystems ≫ Truenas Firmware Version11.2 Updateu1
Ixsystems ≫ Truenas Firmware Version11.2 Updateu2
Ixsystems ≫ Truenas Firmware Version11.2 Updateu2.1
Ixsystems ≫ Truenas Firmware Version11.2 Updateu3
Ixsystems ≫ Truenas Firmware Version11.2 Updateu4
Ixsystems ≫ Truenas Firmware Version11.2 Updateu4.1
Ixsystems ≫ Truenas Firmware Version11.2 Updateu5
Ixsystems ≫ Truenas Firmware Version11.2 Updateu5.1
Ixsystems ≫ Truenas Firmware Version11.2 Updateu6
Ixsystems ≫ Truenas Firmware Version11.2 Updateu6.1
Ixsystems ≫ Truenas Firmware Version11.2 Updateu7
Ixsystems ≫ Truenas Firmware Version11.3 Update-
Ixsystems ≫ Truenas Firmware Version11.3 Updatealpha1
Ixsystems ≫ Truenas Firmware Version11.3 Updatealpha2
Ixsystems ≫ Truenas Firmware Version11.3 Updatebeta1
Ixsystems ≫ Truenas Firmware Version11.3 Updaterc1
Ixsystems ≫ Truenas Firmware Version11.3 Updaterc2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 11.92% | 0.935 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|
CWE-307 Improper Restriction of Excessive Authentication Attempts
The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame.