Safety vulnerability ID: 41182
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Lin-CMS allows remote attackers to launch brute force login attempts without restriction via the 'login' function in the component 'app/api/cms/user.py'.
https://github.com/TaleLin/lin-cms-flask/issues/27
Latest version: 0.4.11
A simple and practical CMS implememted by flask
Improper Authentication in Lin-CMS-Flask v0.1.1 allows remote attackers to launch brute force login attempts without restriction via the 'login' function in the component 'app/api/cms/user.py'. See CVE-2020-18698.
MISC:https://github.com/TaleLin/lin-cms-flask/issues/27: https://github.com/TaleLin/lin-cms-flask/issues/27
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application