CVE-2008-0915
22.02.2008, 23:44
The Mediation server in IPdiva SSL VPN Server 2.2 before 2.2.8.84 and 2.3 before 2.3.2.14 stores the number of remaining allowed login attempts in a cookie, which makes it easier for remote attackers to conduct brute force attacks by manipulating this cookie's value.Enginsight
Vendor | Product | Version |
---|---|---|
ipdiva | ipdiva | 𝑥 ≤ 2.2.8 |
ipdiva | ipdiva | 𝑥 ≤ 2.3.2 |
𝑥
= Vulnerable software versions
References