Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-41350


Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of insufficient measures to prevent multiple failed authentication attempts. An unauthenticated remote attacker can execute a crafted Javascript to expose captcha in page, making it very easy for bots to bypass the captcha check and more susceptible to brute force attacks.


Published

2023-11-03T05:15:29.930

Last Modified

2024-11-21T08:21:07.740

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-307
  • Type: Primary
    CWE-307

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System nokia g-040w-q_firmware g040wqr201207 Yes
Hardware nokia g-040w-q - No

References