Описание
A denial-of-service vulnerability exists in the vpnserver EnSafeHttpHeaderValueStr functionality of SoftEther VPN 5.01.9674 and 5.02. A specially crafted network packet can lead to denial of service.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:softether:vpn:5.01.9674:*:*:*:*:*:*:*
cpe:2.3:a:softether:vpn:5.02:*:*:*:*:*:*:*
EPSS
Процентиль: 21%
0.00068
Низкий
7.5 High
CVSS3
Дефекты
CWE-125
CWE-125
Связанные уязвимости
CVSS3: 7.5
github
больше 2 лет назад
A denial-of-service vulnerability exists in the vpnserver EnSafeHttpHeaderValueStr functionality of SoftEther VPN 5.01.9674 and 5.02. A specially crafted network packet can lead to denial of service.
EPSS
Процентиль: 21%
0.00068
Низкий
7.5 High
CVSS3
Дефекты
CWE-125
CWE-125