Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g3pc-2885-cj35

Опубликовано: 10 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.7

Описание

Due to an uncontrolled resource consumption (Denial of Service) vulnerability, an authenticated attacker with regular user privileges and network access can repeatedly invoke a remote-enabled function module with an excessively large loop-control parameter. This triggers prolonged loop execution that consumes excessive system resources, potentially rendering the system unavailable. Successful exploitation results in a denial-of-service condition that impacts availability, while confidentiality and integrity remain unaffected.

Due to an uncontrolled resource consumption (Denial of Service) vulnerability, an authenticated attacker with regular user privileges and network access can repeatedly invoke a remote-enabled function module with an excessively large loop-control parameter. This triggers prolonged loop execution that consumes excessive system resources, potentially rendering the system unavailable. Successful exploitation results in a denial-of-service condition that impacts availability, while confidentiality and integrity remain unaffected.

EPSS

Процентиль: 27%
0.00354
Низкий

7.7 High

CVSS3

Дефекты

CWE-606
CWE-770

Связанные уязвимости

CVSS3: 7.7
nvd
5 месяцев назад

Due to an uncontrolled resource consumption (Denial of Service) vulnerability, an authenticated attacker with regular user privileges and network access can repeatedly invoke a remote-enabled function module with an excessively large loop-control parameter. This triggers prolonged loop execution that consumes excessive system resources, potentially rendering the system unavailable. Successful exploitation results in a denial-of-service condition that impacts availability, while confidentiality and integrity remain unaffected.

EPSS

Процентиль: 27%
0.00354
Низкий

7.7 High

CVSS3

Дефекты

CWE-606
CWE-770