#VU78826 Weak password requirements in Apache InLong - CVE-2023-31098
Published: August 1, 2023
Apache InLong
Apache Foundation
Description
The vulnerability allows an attacker to perform brute-force attack and guess the password.
The vulnerability exists due to weak password requirements, as Apache InLong users can change their current passwords to a simple password strings. An attacker can perform a brute-force attack and guess users' passwords, which can result in application compromise.