Описание
ASPRunner.NET 10.1 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the table name field. Attackers can input a buffer of 10000 characters in the table name parameter during database table creation to trigger an application crash.
EPSS
Процентиль: 3%
0.00133
Низкий
6.2 Medium
CVSS3
Дефекты
CWE-807
Связанные уязвимости
CVSS3: 6.2
github
6 месяцев назад
ASPRunner.NET 10.1 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the table name field. Attackers can input a buffer of 10000 characters in the table name parameter during database table creation to trigger an application crash.
EPSS
Процентиль: 3%
0.00133
Низкий
6.2 Medium
CVSS3
Дефекты
CWE-807