CVE-2020-15367
Published
CVSS v3
9.8
CRITICAL
CVSS v2
5
MEDIUM
Affected
1
PROJECT
Description
Venki Supravizio BPM 10.1.2 does not limit the number of authentication attempts. An unauthenticated user may exploit this vulnerability to launch a brute-force authentication attack against the Login page.