CWE-307

Improper Restriction of Excessive Authentication Attempts

Description

The product does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame.

Diagram

Diagram illustrating CWE-307: Improper Restriction of Excessive Authentication Attempts

Source: MITRE CWE™ — CWE-307

CWE-307: Improper Restriction of Excessive Authentication Attempts — CVE Insight