Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xfq8-42vh-gcw4

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An uncontrolled resource consumption (denial of service) vulnerability in the login modules of FortiSandbox 3.2.0 through 3.2.2, 3.1.0 through 3.1.4, and 3.0.0 through 3.0.6; and FortiAuthenticator before 6.0.6 may allow an unauthenticated attacker to bring the device into an unresponsive state via specifically-crafted long request parameters.

An uncontrolled resource consumption (denial of service) vulnerability in the login modules of FortiSandbox 3.2.0 through 3.2.2, 3.1.0 through 3.1.4, and 3.0.0 through 3.0.6; and FortiAuthenticator before 6.0.6 may allow an unauthenticated attacker to bring the device into an unresponsive state via specifically-crafted long request parameters.

EPSS

Процентиль: 78%
0.01138
Низкий

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 7.5
nvd
больше 4 лет назад

An uncontrolled resource consumption (denial of service) vulnerability in the login modules of FortiSandbox 3.2.0 through 3.2.2, 3.1.0 through 3.1.4, and 3.0.0 through 3.0.6; and FortiAuthenticator before 6.0.6 may allow an unauthenticated attacker to bring the device into an unresponsive state via specifically-crafted long request parameters.

CVSS3: 7.5
fstec
больше 4 лет назад

Уязвимость системы выявления и устранения угроз FortiSandbox и системы идентификации FortiAuthenticator, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 78%
0.01138
Низкий

Дефекты

CWE-400