Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-30780

Опубликовано: 11 июн. 2022
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Средний

Описание

Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connection_read_header_more in connections.c has a typo that disrupts use of multiple read operations on large headers.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:lighttpd:lighttpd:1.4.56:*:*:*:*:*:*:*
cpe:2.3:a:lighttpd:lighttpd:1.4.57:*:*:*:*:*:*:*
cpe:2.3:a:lighttpd:lighttpd:1.4.58:*:*:*:*:*:*:*

EPSS

Процентиль: 99%
0.5692
Средний

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-682

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 4 лет назад

Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connection_read_header_more in connections.c has a typo that disrupts use of multiple read operations on large headers.

CVSS3: 7.5
debian
около 4 лет назад

Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a den ...

CVSS3: 7.5
github
около 4 лет назад

Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connection_read_header_more in connections.c has a typo that disrupts use of multiple read operations on large headers.

EPSS

Процентиль: 99%
0.5692
Средний

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-682