Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gpgq-5q34-mh72

Опубликовано: 27 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A flaw was found in EAP-7 during deserialization of certain classes, which permits instantiation of HashMap and HashTable with no checks on resources consumed. This issue could allow an attacker to submit malicious requests using these classes, which could eventually exhaust the heap and result in a Denial of Service.

A flaw was found in EAP-7 during deserialization of certain classes, which permits instantiation of HashMap and HashTable with no checks on resources consumed. This issue could allow an attacker to submit malicious requests using these classes, which could eventually exhaust the heap and result in a Denial of Service.

EPSS

Процентиль: 40%
0.0018
Низкий

7.5 High

CVSS3

Дефекты

CWE-770
CWE-789

Связанные уязвимости

CVSS3: 7.5
redhat
больше 2 лет назад

A flaw was found in EAP-7 during deserialization of certain classes, which permits instantiation of HashMap and HashTable with no checks on resources consumed. This issue could allow an attacker to submit malicious requests using these classes, which could eventually exhaust the heap and result in a Denial of Service.

CVSS3: 7.5
nvd
около 2 лет назад

A flaw was found in EAP-7 during deserialization of certain classes, which permits instantiation of HashMap and HashTable with no checks on resources consumed. This issue could allow an attacker to submit malicious requests using these classes, which could eventually exhaust the heap and result in a Denial of Service.

CVSS3: 7.5
fstec
больше 2 лет назад

Уязвимость компонентов Hashtable и HashMap платформы Red Hat JBoss Enterprise Application Platform, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 40%
0.0018
Низкий

7.5 High

CVSS3

Дефекты

CWE-770
CWE-789