Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-775q-3335-qhjr

Опубликовано: 12 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 5.3

Описание

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly restrict the size of generated log files. This could allow an unauthenticated remote attacker to trigger a large amount of logged events to exhaust the system's resources and create a denial of service condition.

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly restrict the size of generated log files. This could allow an unauthenticated remote attacker to trigger a large amount of logged events to exhaust the system's resources and create a denial of service condition.

EPSS

Процентиль: 77%
0.01072
Низкий

6.9 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-125
CWE-400

Связанные уязвимости

CVSS3: 5.3
nvd
около 1 года назад

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly restrict the size of generated log files. This could allow an unauthenticated remote attacker to trigger a large amount of logged events to exhaust the system's resources and create a denial of service condition.

CVSS3: 5.3
fstec
около 1 года назад

Уязвимость программного обеспечения для управления сетевой инфраструктурой SINEC INS, связанная с недостаточным контролем размеров создаваемых файлов журналов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 77%
0.01072
Низкий

6.9 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-125
CWE-400