com/salesmanager/central/profile/ProfileAction.java in Shopizer 1.1.5 and previous versions does not restrict the number of authentication attempts, which makes it easier for remote malicious users to guess passwords via a brute force attack.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
shopizer shopizer |