An improper restriction of excessive authentication attempts in GroupMe allows a unauthenticated attacker to elevate privileges over a network.
CVE ID: CVE-2024-38176
CVSS Base Severity: HIGH
CVSS Base Score: 8.1
Vendor: Microsoft
Product: GroupMe
EPSS Score: 0.34% (probability of being exploited)
EPSS Percentile: 71.58% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)