Bruteforce attack in login panel

Disclosed: 2014-04-15 02:50:53 By shahmeer-amir To faceless
Unknown
Vulnerability Details
Your application does not limit login attempts done by a user because there is no ratelimiting at the panel that allows a malicious user to brute passwords
Actions
View on HackerOne
Report Stats
  • Report ID: 7270
  • State: Closed
  • Substate: resolved
  • Upvotes: 2
Share this report