VYPR

Login Disable

by Budda

CVEs (4)

  • CVE-2024-13309MedJan 9, 2025
    risk 0.35cvss 5.4epss 0.00

    Improper Authentication vulnerability in Drupal Login Disable allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Login Disable: from 2.0.0 before 2.1.1.

  • CVE-2026-15079MedJul 10, 2026
    risk 0.28cvss 5.4epss 0.00

    Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Login Disable allows Brute Force. This issue affects Login Disable versions: from 0.0.0 to 2.1.4.

  • CVE-2026-1917MedMar 25, 2026
    risk 0.28cvss 4.3epss 0.00

    Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Login Disable allows Functionality Bypass.This issue affects Login Disable: from 0.0.0 before 2.1.3.

  • CVE-2015-8082Nov 6, 2015
    risk 0.00cvss epss 0.02

    The Login Disable module 6.x-1.x before 6.x-1.1 and 7.x-1.x before 7.x-1.2 for Drupal does not properly load the user_logout function, which allows remote attackers to bypass the logout protection mechanism by leveraging a contributed user authentication module, as demonstrated…