CVE-2017-15887

9.8CRITICAL

An improper restriction of excessive authentication attempts vulnerability in /principals in Synology CardDAV Server before 6.0.7-0085 allows remote attackers to obtain user credentials via a brute-fo

Published: 11/7/2017Updated: 4/20/2025

Description

An improper restriction of excessive authentication attempts vulnerability in /principals in Synology CardDAV Server before 6.0.7-0085 allows remote attackers to obtain user credentials via a brute-force attack.

AI AnalysisPowered by AI

Affected Products

synologycarddav_server

References