Описание
ConnectionManagerImpl.java in Ignite Realtime Openfire 3.4.5 allows remote authenticated users to cause a denial of service (daemon outage) by triggering large outgoing queues without reading messages.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:ignite_realtime:openfire:3.4.5:*:*:*:*:*:*:*
EPSS
Процентиль: 80%
0.01384
Низкий
4 Medium
CVSS2
Дефекты
CWE-399
Связанные уязвимости
github
почти 4 года назад
Ignite Realtime Openfire allows remote authenticated users to cause a denial of service
EPSS
Процентиль: 80%
0.01384
Низкий
4 Medium
CVSS2
Дефекты
CWE-399