Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w9cf-hgg2-5xxw

Опубликовано: 18 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

Improper input validation in AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS can result in unauthenticated CPE (Customer Premises Equipment) devices storing arbitrarily large amounts of data during registration. This can potentially lead to DDoS attacks on the application database and, ultimately, affect the entire product.

Improper input validation in AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS can result in unauthenticated CPE (Customer Premises Equipment) devices storing arbitrarily large amounts of data during registration. This can potentially lead to DDoS attacks on the application database and, ultimately, affect the entire product.

EPSS

Процентиль: 25%
0.00085
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 5.9
nvd
почти 2 года назад

Improper input validation in AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS can result in unauthenticated CPE (Customer Premises Equipment) devices storing arbitrarily large amounts of data during registration. This can potentially lead to DDoS attacks on the application database and, ultimately, affect the entire product.

EPSS

Процентиль: 25%
0.00085
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-20