Security Advisory

CVE-2023-41350

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-11-03 04:44:04
Last updated 2024-09-06 19:56:30
Assigner twcert
State PUBLISHED

Description

Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of insufficient measures to prevent multiple failed authentication attempts. An unauthenticated remote attacker can execute a crafted Javascript to expose captcha in page, making it very easy for bots to bypass the captcha check and more susceptible to brute force attacks.