Перейти к содержимому
Noroxi

CWE-799 · 59 записей

Improper Control of Interaction Frequency

CVE этого класса

59 записей

  • CVE-2025-54321
    39Наблюдать

    In Ascertia SigningHub through 8.6.8, there is a lack of rate limiting on the reset password function, leading to an email bombing vulnerabi

    КритическаяCVSS 9,8Proof of conceptEPSS 0 %

    ascertia · signinghub18 нояб. 2025 г.

  • CVE-2023-40332
    39Наблюдать

    WordPress WP-PostRatings plugin <= 1.91 - Rating limit Bypass vulnerability

    КритическаяCVSS 9,8Эксплойта нетEPSS 0 %

    lesterchan · wp-postratings4 июн. 2024 г.

  • CVE-2023-7006
    36Наблюдать

    The unlockKey character in a lock using Sciener firmware can be brute forced through repeated challenge requests, compromising the locks int

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    sciener · kontrol lux15 мар. 2024 г.

  • CVE-2024-45788
    34Наблюдать

    No Rate Limiting Vulnerability

    ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %

    reedos · aim-star11 сент. 2024 г.

  • CVE-2024-32943
    34Наблюдать

    Westermo L210-F2G Lynx Improper Control of Interaction Frequency

    ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %

    westermo · l210-f2g firmware20 июн. 2024 г.

  • CVE-2024-35246
    34Наблюдать

    Westermo L210-F2G Lynx Improper Control of Interaction Frequency

    ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %

    westermo · l210-f2g lynx firmware20 июн. 2024 г.

  • CVE-2026-100603
    34Наблюдать

    ClawHub before 8c2de6c506 Skill Hiding via Coordinated Reports

    ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %

    openclaw · clawhub4 дня назад

  • CVE-2021-41177
    32Наблюдать

    Rate-limits not working on instances without configured memory cache backend

    ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %

    nextcloud · nextcloud server25 окт. 2021 г.

  • CVE-2026-24017
    32Наблюдать

    An Improper Control of Interaction Frequency vulnerability [CWE-799] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0

    ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %

    fortinet · fortiweb10 мар. 2026 г.

  • CVE-2026-7402
    32Наблюдать

    Improper Rate Limiting in MeWare Software's PDKS

    ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %

    meware software development inc. · pdks30 апр. 2026 г.

  • CVE-2025-29998
    32Наблюдать

    No Rate Limiting Vulnerability in CAP back office application

    ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %

    rising technosoft · cap back office application13 мар. 2025 г.

  • CVE-2023-35621
    31Наблюдать

    Microsoft Dynamics 365 Finance and Operations Denial of Service Vulnerability

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    microsoft · dynamics 36512 дек. 2023 г.

  • CVE-2021-32705
    31Наблюдать

    Lack of ratelimit on public DAV endpoint

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    nextcloud · nextcloud server12 июл. 2021 г.

  • CVE-2024-9199
    30Наблюдать

    Rate limit vulnerability in Clibo Manager

    ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %

    clibomanager · clibo manager26 сент. 2024 г.

  • CVE-2023-38068
    29Наблюдать

    In JetBrains YouTrack before 2023.1.16597 captcha was not properly validated for Helpdesk forms

    ВысокаяCVSS 7,3Эксплойта нетEPSS 1 %

    jetbrains · youtrack12 июл. 2023 г.

  • CVE-2024-47654
    28Наблюдать

    No Rate Limiting vulnerability

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    shilpisoft · client dashboard4 окт. 2024 г.

  • CVE-2024-51557
    28Наблюдать

    No Rate Limiting Vulnerability in Wave 2.0

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    63moons · aero4 нояб. 2024 г.

  • CVE-2026-33434
    28Наблюдать

    Wazuh: Rate Limit Bypass via /events Endpoint

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    wazuh · wazuh16 июл. 2026 г.

  • CVE-2026-5233
    28Наблюдать

    Missing Rate Limiting in Mia Technologies' Pizzy Library

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    mia technology inc. · pizzy library15 июн. 2026 г.

  • CVE-2026-41343
    27Наблюдать

    OpenClaw < 2026.3.31 - Denial of Service via LINE Webhook Handler Pre-Auth Concurrency

    СредняяCVSS 6,9Эксплойта нетEPSS 1 %

    openclaw · openclaw23 апр. 2026 г.

  • CVE-2026-30972
    27Наблюдать

    Parse Server has a rate limit bypass via batch request endpoint

    СредняяCVSS 6,9Эксплойта нетEPSS 1 %

    parseplatform · parse-server10 мар. 2026 г.

  • CVE-2026-85586
    27Наблюдать

    phpMyFAQ before 4.1.8 CAPTCHA Bypass via store parameter

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    thorsten · phpmyfaq4 сент. 2026 г.

  • CVE-2026-22216
    27Наблюдать

    wpDiscuz before 7.6.47 - No Rate Limiting on Subscription Endpoints with LIKE Wildcard Bypass

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    gvectors · wpdiscuz13 мар. 2026 г.

  • CVE-2025-32378
    27Наблюдать

    Shopware's default newsletter opt-in settings allow for mass sign-up abuse

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    shopware · shopware9 апр. 2025 г.

  • CVE-2020-5141
    26Наблюдать

    A vulnerability in SonicOS allows a remote unauthenticated attacker to brute force Virtual Assist ticket ID in the firewall SSLVPN service.

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    sonicwall · sonicos12 окт. 2020 г.

Все классы уязвимостей