Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qp55-wf2p-vrj5

Опубликовано: 03 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Teamplus Pro community discussion has an ‘allocation of resource without limits or throttling’ vulnerability on thread subject field. A remote attacker with general user privilege posting a thread subject with large content can cause the server to allocate too much memory, leading to missing partial post content and disrupt partial service.

Teamplus Pro community discussion has an ‘allocation of resource without limits or throttling’ vulnerability on thread subject field. A remote attacker with general user privilege posting a thread subject with large content can cause the server to allocate too much memory, leading to missing partial post content and disrupt partial service.

EPSS

Процентиль: 59%
0.00378
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 5.4
nvd
больше 3 лет назад

Teamplus Pro community discussion has an ‘allocation of resource without limits or throttling’ vulnerability on thread subject field. A remote attacker with general user privilege posting a thread subject with large content can cause the server to allocate too much memory, leading to missing partial post content and disrupt partial service.

EPSS

Процентиль: 59%
0.00378
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-770