
Proof-of-concept for CVE-2021-27188: remote denial-of-service via repeated invalid login attempts against FX Aggregator terminal client, locking accounts for five hours.
The FX Aggregator terminal client by "Sovremennye Delovye Tekhnologii" allows attackers to cause a denial of service (access suspended for five hours) by making five invalid login attempts to a victim's account.
DoS
OOO Sovremennye Delovye Tekhnologii
Fx-agreggator terminal client - 1
affected executable
Remote
true
To exploit vulnerability someone should try to login as other user with invalid credentials for 5 times. Valid user will be blocked for 5 hours.
true
Maria Kononova, Dmitry Kuramin (Jet Infosystems, jet.su)