CVE-2024-48143

A lack of rate limiting in the OTP validation component of Digitory Multi Channel Integrated POS v1.0 allows attackers to gain access to the ordering system and place an excessive amount of food orders.
Configurations

No configuration.

History

25 Oct 2024, 18:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
CWE CWE-307

25 Oct 2024, 12:56

Type Values Removed Values Added
Summary
  • (es) La falta de limitaciĆ³n de velocidad en el componente de validaciĆ³n de OTP de Digitory Multi Channel Integrated POS v1.0 permite a los atacantes obtener acceso al sistema de pedidos y realizar una cantidad excesiva de pedidos de comida.

24 Oct 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-24 19:15

Updated : 2024-10-25 18:35


NVD link : CVE-2024-48143

Mitre link : CVE-2024-48143

CVE.ORG link : CVE-2024-48143


JSON object : View

Products Affected

No product.

CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts