Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-563c-38v4-f6vp

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

BitsCast 0.13.0 allows remote attackers to cause a denial of service (application crash) via an RSS 2.0 feed item with certain invalid strings in a pubDate element, as demonstrated by repeated "../A" or "A/../" patterns.

BitsCast 0.13.0 allows remote attackers to cause a denial of service (application crash) via an RSS 2.0 feed item with certain invalid strings in a pubDate element, as demonstrated by repeated "../A" or "A/../" patterns.

EPSS

Процентиль: 90%
0.05741
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

BitsCast 0.13.0 allows remote attackers to cause a denial of service (application crash) via an RSS 2.0 feed item with certain invalid strings in a pubDate element, as demonstrated by repeated "../A" or "A/../" patterns.

EPSS

Процентиль: 90%
0.05741
Низкий