Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-35m6-rf3v-8cxx

Опубликовано: 10 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 8.2
CVSS3: 7.5

Описание

A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian, caused by improper input validation in certain fields used in the Radius parsing functionality of our IDS, allows an unauthenticated attacker sending specially crafted malformed network packets to cause the IDS module to stop updating nodes, links, and assets.

Network traffic may not be analyzed until the IDS module is restarted.

A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian, caused by improper input validation in certain fields used in the Radius parsing functionality of our IDS, allows an unauthenticated attacker sending specially crafted malformed network packets to cause the IDS module to stop updating nodes, links, and assets.

Network traffic may not be analyzed until the IDS module is restarted.

EPSS

Процентиль: 39%
0.00174
Низкий

8.2 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-1286
CWE-20

Связанные уязвимости

CVSS3: 7.5
nvd
почти 2 года назад

A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian, caused by improper input validation in certain fields used in the Radius parsing functionality of our IDS, allows an unauthenticated attacker sending specially crafted malformed network packets to cause the IDS module to stop updating nodes, links, and assets. Network traffic may not be analyzed until the IDS module is restarted.

CVSS3: 7.5
fstec
больше 1 года назад

Уязвимость функции синтаксического анализа Radius средства обнаружения и отслеживания сетевой активности Nozomi Guardian, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 39%
0.00174
Низкий

8.2 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-1286
CWE-20