CWE-645 - Overly Restrictive Account Lockout Mechanism

Description

The software contains an account lockout protection mechanism, but the mechanism is too restrictive and can be triggered too easily, which allows attackers to deny service to legitimate users by causing their accounts to be locked out.






Latest vulnerabilities for CWE-645

References

Description of CWE-645 on Mitre website