CVE-2022-37145
n/a n/a, plextrac 취약점
The PlexTrac platform prior to version 1.17.0 does not restrict excessive authentication attempts for accounts configured to use the PlexTrac authentication provider. An unauthenticated remote attacker could perform a bruteforce attack on the login page with no time or attempt limitation in an attempt to obtain valid credentials for the platform users configured to use the PlexTrac authentication provider.
- 대응 우선순위
- 점검
- CVSS
- 7.5
- EPSS
- 0.89% 백분위 55.7% · 2026.08.02 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2022.09.08