Monstra 3.0.1 and previous versions uses a cookie to track how many login attempts have been attempted, which allows remote malicious users to conduct brute force login attacks by deleting the login_attempts cookie or setting it to certain values.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
monstra monstra |