Required CVE Record Information
Description
EMC SourceOne Email Management before 7.2 does not have a lockout mechanism for invalid login attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- securitytracker.com: 1032238 vdb-entryx_transferred
- seclists.org: 20150504 ESA-2015-077: EMC SourceOne Email Management Account Lockout mailing-listx_transferred
- http://packetstormsecurity.com/files/131748/EMC-SourceOne-Email-Management-Account-Lockout-Policy.html x_transferred