Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xxqj-x2pv-x5jj

Опубликовано: 03 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Uncontrolled Resource Consumption vulnerability in MESbook 20221021.03 version. An unauthenticated remote attacker can use the "message" parameter to inject a payload with dangerous JavaScript code, causing the application to loop requests on itself, which could lead to resource consumption and disable the application.

Uncontrolled Resource Consumption vulnerability in MESbook 20221021.03 version. An unauthenticated remote attacker can use the "message" parameter to inject a payload with dangerous JavaScript code, causing the application to loop requests on itself, which could lead to resource consumption and disable the application.

EPSS

Процентиль: 69%
0.00625
Низкий

7.5 High

CVSS3

Дефекты

CWE-400
CWE-770

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 года назад

Uncontrolled Resource Consumption vulnerability in MESbook 20221021.03 version. An unauthenticated remote attacker can use the "message" parameter to inject a payload with dangerous JavaScript code, causing the application to loop requests on itself, which could lead to resource consumption and disable the application.

EPSS

Процентиль: 69%
0.00625
Низкий

7.5 High

CVSS3

Дефекты

CWE-400
CWE-770