First published: Fri Aug 16 2024(Updated: )
Pluck CMS 4.7.18 does not restrict failed login attempts, allowing attackers to execute a brute force attack.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pluck CMS | =4.7.18 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43042 has a high severity rating due to its ability to enable brute force attacks.
To fix CVE-2024-43042, implement restrictions on failed login attempts to prevent brute force attacks.
CVE-2024-43042 affects Pluck CMS version 4.7.18.
Yes, CVE-2024-43042 can potentially allow attackers to gain unauthorized access through brute force methods.
As of now, there is no specific patch mentioned for CVE-2024-43042, so mitigation measures should be applied.