Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-29218

Опубликовано: 03 апр. 2023
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

The Twitter Recommendation Algorithm through ec83d01 allows attackers to cause a denial of service (reduction of reputation score) by arranging for multiple Twitter accounts to coordinate negative signals regarding a target account, such as unfollowing, muting, blocking, and reporting, as exploited in the wild in March and April 2023. NOTE: Vendor states that allowing users to unfollow, mute, block, and report tweets and accounts and the impact of these negative engagements on Twitter’s ranking algorithm is a conscious design decision, rather than a security vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:twitter:recommendation_algorithm:*:*:*:*:*:*:*:*
Версия до 2023-03-31 (включая)

EPSS

Процентиль: 48%
0.00245
Низкий

7.5 High

CVSS3

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 7.5
github
почти 3 года назад

The Twitter Recommendation Algorithm through ec83d01 allows attackers to cause a denial of service (reduction of reputation score) by arranging for multiple Twitter accounts to coordinate negative signals regarding a target account, such as unfollowing, muting, blocking, and reporting, as exploited in the wild in March and April 2023.

EPSS

Процентиль: 48%
0.00245
Низкий

7.5 High

CVSS3

Дефекты

NVD-CWE-noinfo