Publication Date: |
2022-03-08 |
Last Update: |
2022-03-08 |
Current Version: |
V1.0 |
CVSS v3.1 Base Score: |
9.1 |
- CVE-2022-26313: Disable sign up as described in the documentation
- Restrict access to application webserver for trusted users only
CVSS v3.1 Base Score |
9.1 |
CVSS Vector |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N/E:P/RL:O/RC:C |
CWE: |
CWE-284: Improper Access Control |
CVSS v3.1 Base Score |
7.4 |
CVSS Vector |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N/E:P/RL:O/RC:C |
CWE: |
CWE-307: Improper Restriction of Excessive Authentication Attempts |