Improper Restriction of Excessive Authentication Attempts in phpipam/phpipam
Published Nov 15, 2024
5.9
MEDIUMCVSS 3.1
EPSS 0.46%
Description
phpIPAM version 1.5.1 contains a vulnerability where an attacker can bypass the IP block mechanism to brute force passwords for users by using the 'X-Forwarded-For' header. The issue lies in the 'get_user_ip()' function in 'class.Common.php' at lines 1044 and 1045, where the presence of the 'X-Forwarded-For' header is checked and used instead of 'REMOTE_ADDR'. This vulnerability allows attackers to perform brute force attacks on user accounts, including the admin account. The issue is fixed in version 1.7.0.
Affected products
-
- Version unspecifiedStatusaffectedConstraints<1.7.0
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Phpipam | Phpipam/phpipam | n/a |
|
-
- Version 0StatusaffectedConstraints<1.70
- Version
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (2)
- https://github.com/phpipam/phpipam/commit/55c2056068be9f1359e967fcff64db6b7f4d00b5 Patch
- https://huntr.com/bounties/840cb582-1feb-43ab-9cc4-e4b5a63c5bab ExploitThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://github.com/phpipam/phpipam/commit/55c2056068be9f1359e967fcff64db6b7f4d00b5 | Patch | |
| https://huntr.com/bounties/840cb582-1feb-43ab-9cc4-e4b5a63c5bab | ExploitThird Party Advisory |
Change history (0)
No recorded changes yet.