Описание
jsish 2.4.74 2.0474 is affected by: CWE-476: NULL Pointer Dereference. The impact is: denial of service. The component is: function Jsi_StrcmpDict (jsiChar.c:121). The attack vector is: The victim must execute crafted javascript code. The fixed version is: 2.4.77.
Ссылки
- ExploitPatchVendor Advisory
- ExploitPatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:jsish:jsish:2.4.77_2.0477:*:*:*:*:*:*:*
EPSS
Процентиль: 38%
0.00164
Низкий
5.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-476
CWE-476
Связанные уязвимости
github
больше 3 лет назад
jsish 2.4.74 2.0474 is affected by: CWE-476: NULL Pointer Dereference. The impact is: denial of service. The component is: function Jsi_StrcmpDict (jsiChar.c:121). The attack vector is: The victim must execute crafted javascript code. The fixed version is: 2.4.77.
EPSS
Процентиль: 38%
0.00164
Низкий
5.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-476
CWE-476