Lucene search

K
osvGoogleOSV:CVE-2021-33563
HistoryMay 24, 2021 - 11:15 p.m.

CVE-2021-33563

2021-05-2423:15:08
Google
osv.dev
4
koel
login throttling
password strength
brute-force attacks

AI Score

7

Confidence

Low

EPSS

0.003

Percentile

68.0%

Koel before 5.1.4 lacks login throttling, lacks a password strength policy, and shows whether a failed login attempt had a valid username. This might make brute-force attacks easier.

AI Score

7

Confidence

Low

EPSS

0.003

Percentile

68.0%

Related for OSV:CVE-2021-33563