Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g2rw-3cc4-qq38

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The OpenID client application in Atlassian Crowd before version 3.6.2, and from version 3.7.0 before 3.7.1 allows remote attackers to perform a Denial of Service attack via an XML Entity Expansion vulnerability.

The OpenID client application in Atlassian Crowd before version 3.6.2, and from version 3.7.0 before 3.7.1 allows remote attackers to perform a Denial of Service attack via an XML Entity Expansion vulnerability.

EPSS

Процентиль: 85%
0.02432
Низкий

Дефекты

CWE-776

Связанные уязвимости

CVSS3: 7.5
nvd
около 6 лет назад

The OpenID client application in Atlassian Crowd before version 3.6.2, and from version 3.7.0 before 3.7.1 allows remote attackers to perform a Denial of Service attack via an XML Entity Expansion vulnerability.

EPSS

Процентиль: 85%
0.02432
Низкий

Дефекты

CWE-776