CWE-307 - Improper Restriction of Excessive Authentication Attempts


If the software, used for taking preventive measures against untrusted authentication, protects the system uncorrectly, attackers can easily get access to the vulnerable account by using different passwords during multiple authentication.
The weakness is introduced during Architecture and Design stage.

