Skip to content
Noroxi

CWE-645 · 8 records

Overly Restrictive Account Lockout Mechanism

CVEs in this class

8 records

  • CVE-2023-4346
    60This week

    KNX devices that use KNX Connection Authorization and support Option 1 are, depending on the implementation, vulnerable to being locked and

    HighCVSS 7.5KEVWeaponizedEPSS 1%

    knx · connection authorizationAug 29, 2023

  • Dell PowerScale OneFS, version 9.13.0.0, contains an overly restrictive account lockout mechanism vulnerability.

    HighCVSS 7.5No exploitEPSS 0%

    dell · powerscale onefsMar 4, 2026

  • Cap-go Console < 12.28.2 Account Deletion DoS via Device Identifier Association

    HighCVSS 7.1No exploitEPSS 1%

    cap-go · capgoJun 12, 2026

  • BIG-IP Next Central Manager vulnerability

    MediumCVSS 6.3No exploitEPSS 0%

    f5 · big-ip next central managerAug 14, 2024

  • CVE-2024-1722
    21Monitor

    Keycloak-core: dos via account lockout

    MediumCVSS 5.3No exploitEPSS 1%

    redhat · keycloakFeb 28, 2024

  • CVE-2025-5241
    21Monitor

    Denial-of-Service Vulnerability in MELSEC iQ-F Series

    MediumCVSS 5.3No exploitEPSS 0%

    mitsubishi electric corporation · melsec iq-f series fx5u-32mt/esJul 10, 2025

  • Repeated LDAP login failures can lock an LDAP account

    MediumCVSS 5.3No exploitEPSS 0%

    mattermost · mattermost serverMay 15, 2025

  • Duplicate Advisory: Keycloak DoS via account lockout

    LowCVSS 3.7No exploit

    Maven · org.keycloak:keycloak-coreFeb 29, 2024

All vulnerability classes