Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-2764

Опубликовано: 01 сент. 2022
Источник: nvd
CVSS3: 4.9
EPSS Низкий

Описание

A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:redhat:integration_camel_k:-:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_enterprise_application_platform:7.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:jboss_fuse:7.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:single_sign-on:7.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:undertow:*:*:*:*:*:*:*:*
Версия от 2.0.0 (включая) до 2.2.19 (включая)
cpe:2.3:a:redhat:undertow:2.3.0:alpha1:*:*:*:*:*:*
cpe:2.3:a:redhat:undertow:2.3.0:alpha2:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:linux:*:*
cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:*
cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:windows:*:*
cpe:2.3:a:netapp:cloud_secure_agent:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:*

EPSS

Процентиль: 31%
0.00118
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-400
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 3 лет назад

A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.

CVSS3: 4.2
redhat
больше 3 лет назад

A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.

CVSS3: 4.9
debian
больше 3 лет назад

A flaw was found in Undertow. Denial of service can be achieved as Und ...

CVSS3: 4.9
github
больше 3 лет назад

A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.

EPSS

Процентиль: 31%
0.00118
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-400
NVD-CWE-noinfo