CVE

Id
76307  
CVE No.
CVE-2014-9006  
Status
Candidate  
Description
Monstra 3.0.1 and earlier uses a cookie to track how many login attempts have been attempted, which allows remote attackers to conduct brute force login attacks by deleting the login_attempts cookie or setting it to certain values.  
Phase
Assigned (20141119)  
Votes
None (candidate not yet proposed)  
Comments