CVE-2024-43042

9.8CRITICAL

Pluck CMS 4.7.18 does not restrict failed login attempts, allowing attackers to execute a brute force attack.

Published: 8/16/2024Updated: 3/19/2025

Description

Pluck CMS 4.7.18 does not restrict failed login attempts, allowing attackers to execute a brute force attack.

AI AnalysisPowered by AI

Affected Products

pluck-cmspluck
4.7.18

References