Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xfcp-h9vc-f632

Опубликовано: 09 авг. 2023
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 4.3

Описание

A partial DoS vulnerability has been detected in the Reports section, exploitable by a malicious authenticated user forcing a report to be saved with its name set as null.

The reports section will be partially unavailable for all later attempts to use it, with the report list seemingly stuck on loading.

A partial DoS vulnerability has been detected in the Reports section, exploitable by a malicious authenticated user forcing a report to be saved with its name set as null.

The reports section will be partially unavailable for all later attempts to use it, with the report list seemingly stuck on loading.

EPSS

Процентиль: 27%
0.00099
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-1286
CWE-20

Связанные уязвимости

CVSS3: 4.3
nvd
больше 2 лет назад

A partial DoS vulnerability has been detected in the Reports section, exploitable by a malicious authenticated user forcing a report to be saved with its name set as null. The reports section will be partially unavailable for all later attempts to use it, with the report list seemingly stuck on loading.

CVSS3: 4.3
fstec
больше 2 лет назад

Уязвимость компонента Reports (Отчеты) средства обнаружения и отслеживания сетевой активности Nozomi Guardian и средства централизованного управления безопасностью Nozomi Central Management Console (CMC), позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 27%
0.00099
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-1286
CWE-20