CVE-2016-10321
10.04.2017, 14:59
web2py before 2.14.6 does not properly check if a host is denied before verifying passwords, allowing a remote attacker to perform brute-force attacks.Enginsight
| Vendor | Product | Version |
|---|---|---|
| web2py | web2py | 𝑥 ≤ 2.14.5 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References