Headline
CVE-2023-24080: Sharing Link Validation
A lack of rate limiting on the password reset endpoint of Chamberlain myQ v5.222.0.32277 (on iOS) allows attackers to compromise user accounts via a bruteforce attack.
To open the content, enter the password. If you don’t have the link password, ask the person who shared the content with you.
Why do I have to do this?
The sharing link has a password set on it. You need to enter the password to access the content.
Checking…
Related news
A lack of rate limiting on the password reset endpoint of Chamberlain myQ v5.222.0.32277 (on iOS) allows attackers to compromise user accounts via a bruteforce attack.
A lack of rate limiting on the password reset endpoint of Chamberlain myQ v5.222.0.32277 (on iOS) allows attackers to compromise user accounts via a bruteforce attack.