CVE-2020-7995: Critical severity dolibarr Dolibarr Erp\/crm vulnerability
The htdocs/index.php?mainmenu=home login page in Dolibarr 10.0.6 allows an unlimited rate of failed authentication attempts.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-7995?
CVE-2020-7995 is a vulnerability in Dolibarr 10.0.6 that allows an unlimited rate of failed authentication attempts on the login page.
How severe is CVE-2020-7995?
CVE-2020-7995 has a severity rating of 9.8, which is considered critical.
What is the affected software for CVE-2020-7995?
The affected software is Dolibarr 10.0.6.
What is the CWE for CVE-2020-7995?
The CWE for CVE-2020-7995 is 307, which relates to insufficient protection against brute force attacks.
Are there any references related to CVE-2020-7995?
Yes, here are some references related to CVE-2020-7995: [PacketStormSecurity](http://packetstormsecurity.com/files/163541/Dolibarr-ERP-CRM-10.0.6-Login-Brute-Forcer.html), [GitHub](https://github.com/tufangungor/tufangungor.github.io/blob/master/_posts/2020-01-19-dolibarr-10.0.6-brute-force.md), [Exploit](https://tufangungor.github.io/exploit/2020/01/18/dolibarr-10.0.6-brute-force.html)