Description
Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Access code allows Brute Force.This issue affects Access code: from 0.0.0 before 2.0.5.
Problem types
CWE-307 Improper Restriction of Excessive Authentication Attempts
Product status
0.0.0 (semver) before 2.0.5
Credits
Pierre Rudloff (prudloff)
Gergely Lekli (glekli)
Pierre Rudloff (prudloff)
Greg Knaddison (greggles)
Pierre Rudloff (prudloff)
References
www.drupal.org/sa-contrib-2025-108