Description
IBM Sterling Connect:Express for Microsoft Windows 3.1.0.0 through 3.1.0.22 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.
Problem types
CWE-307 Improper Restriction of Excessive Authentication Attempts
Product status
3.1.0.0 (semver)
References
www.ibm.com/support/pages/node/7245761