Description
Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Protected Pages allows Brute Force.This issue affects Protected Pages: from 0.0.0 before 1.8.0.
Problem types
CWE-307 Improper Restriction of Excessive Authentication Attempts
Product status
0.0.0 before 1.8.0
Credits
Pierre Rudloff (prudloff)
Oksana Cyrwus (oksana-c)
Ra Mänd (ram4nd)
Benji Fisher (benjifisher)
Damien McKenna (damienmckenna)
Greg Knaddison (greggles)
Drew Webber (mcdruid)
Juraj Nemec (poker10)
References
www.drupal.org/sa-contrib-2025-101