Описание
WebSSH for iOS 14.16.10 contains a denial of service vulnerability in the mashREPL tool that allows attackers to crash the application by pasting malformed input. Attackers can trigger the vulnerability by copying a 300-character buffer of repeated 'A' characters into the mashREPL input field, causing the application to crash.
EPSS
Процентиль: 11%
0.00037
Низкий
7.5 High
CVSS3
Дефекты
CWE-1284
Связанные уязвимости
CVSS3: 7.5
github
22 дня назад
WebSSH for iOS 14.16.10 contains a denial of service vulnerability in the mashREPL tool that allows attackers to crash the application by pasting malformed input. Attackers can trigger the vulnerability by copying a 300-character buffer of repeated 'A' characters into the mashREPL input field, causing the application to crash.
EPSS
Процентиль: 11%
0.00037
Низкий
7.5 High
CVSS3
Дефекты
CWE-1284