Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jp5q-cjfh-mwp6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

plugins/mod_compression.lua in Lightwitch Metronome through 3.4 does not properly restrict the processing of compressed XML elements, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XMPP stream, aka an "xmppbomb" attack.

plugins/mod_compression.lua in Lightwitch Metronome through 3.4 does not properly restrict the processing of compressed XML elements, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XMPP stream, aka an "xmppbomb" attack.

EPSS

Процентиль: 73%
0.00753
Низкий

Связанные уязвимости

nvd
почти 12 лет назад

plugins/mod_compression.lua in Lightwitch Metronome through 3.4 does not properly restrict the processing of compressed XML elements, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XMPP stream, aka an "xmppbomb" attack.

EPSS

Процентиль: 73%
0.00753
Низкий