Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fc5p-cp62-fgpc

Опубликовано: 26 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An issue was discovered in Zammad before 6.3.0. An authenticated agent could perform a remote Denial of Service attack by calling an endpoint that accepts a generic method name, which was not properly sanitized against an allowlist.

An issue was discovered in Zammad before 6.3.0. An authenticated agent could perform a remote Denial of Service attack by calling an endpoint that accepts a generic method name, which was not properly sanitized against an allowlist.

EPSS

Процентиль: 73%
0.00779
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 6.5
nvd
почти 2 года назад

An issue was discovered in Zammad before 6.3.0. An authenticated agent could perform a remote Denial of Service attack by calling an endpoint that accepts a generic method name, which was not properly sanitized against an allowlist.

CVSS3: 6.5
debian
почти 2 года назад

An issue was discovered in Zammad before 6.3.0. An authenticated agent ...

EPSS

Процентиль: 73%
0.00779
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-862