CVE-2024-47654 - Shilpi Client Dashboard OTP Bombing Vulnerability

CVE ID : CVE-2024-47654 Published : Oct. 4, 2024, 1:15 p.m. | 2 hours, 29 minutes ago Description : This vulnerability exists in Shilpi Client Dashboard due to lack of rate limiting and Captcha protection for OTP requests in certain API endpoint. An unauthenticated remote attacker could exploit this vulnerability by sending multiple OTP request through vulnerable API endpoints, which could lead to the OTP bombing on the targeted system. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Okt 4, 2024 - 17:45
 0  2
CVE-2024-47654 - Shilpi Client Dashboard OTP Bombing Vulnerability
CVE ID : CVE-2024-47654
Published : Oct. 4, 2024, 1:15 p.m. | 2 hours, 29 minutes ago
Description : This vulnerability exists in Shilpi Client Dashboard due to lack of rate limiting and Captcha protection for OTP requests in certain API endpoint. An unauthenticated remote attacker could exploit this vulnerability by sending multiple OTP request through vulnerable API endpoints, which could lead to the OTP bombing on the targeted system.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...