{"id":"CVE-2023-0860","aliases":["GHSA-q9ww-gjpw-p9g6","PYSEC-2026-849"],"url":"https://o3.security/vulnerability/CVE-2023-0860","summary":"Improper Restriction of Excessive Authentication Attempts in modoboa/modoboa-installer","details":"Improper Restriction of Excessive Authentication Attempts in GitHub repository modoboa/modoboa-installer prior to 2.0.4.","published":"2023-02-16T00:00:00Z","modified":"2026-08-12T03:51:10.388008796Z","cvss":{"score":7.8,"severity":"HIGH","vector":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"epss":{"score":0.00653,"percentile":0.48316,"asOf":"2026-08-23"},"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"PyPI","name":"modoboa","fixedVersion":"2.0.4"}],"fix":{"url":"https://github.com/modoboa/modoboa-installer/commit/63d92b73f3da6971ae4e13d033d625773ac91085","label":"modoboa/modoboa-installer@63d92b7"},"references":[{"type":"WEB","url":"https://huntr.dev/bounties/64f3ab93-1357-4468-8ff4-52bbcec18cca"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/0xxx/CVE-2023-0860.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-0860"},{"type":"FIX","url":"https://github.com/modoboa/modoboa-installer/commit/63d92b73f3da6971ae4e13d033d625773ac91085"},{"type":"PACKAGE","url":"https://github.com/modoboa/modoboa"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T03:51:10.388008796Z"}}