CVE-2025-35041 - Airship AI Acropolis MFA insufficient rate limiting
CVE ID : CVE-2025-35041
Published : Sept. 22, 2025, 4:15 p.m. | 2 hours, 12 minutes ago
Description : Airship AI Acropolis allows unlimited MFA attempts for 15 minutes after a user has logged in with valid credentials. A remote attacker with valid credentials could brute-force the 6-digit MFA code. Fixed in 10.2.35, 11.0.21, and 11.1.9.
Severity: 7.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 22, 2025, 4:15 p.m. | 2 hours, 12 minutes ago
Description : Airship AI Acropolis allows unlimited MFA attempts for 15 minutes after a user has logged in with valid credentials. A remote attacker with valid credentials could brute-force the 6-digit MFA code. Fixed in 10.2.35, 11.0.21, and 11.1.9.
Severity: 7.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...