Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-49619

Опубликовано: 10 янв. 2024
Источник: nvd
CVSS3: 3.1
EPSS Низкий

Описание

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in Apache Answer.

This issue affects Apache Answer: through 1.2.0.

Under normal circumstances, a user can only bookmark a question once, and will only increase the number of questions bookmarked once. However, repeat submissions through the script can increase the number of collection of the question many times.

Users are recommended to upgrade to version [1.2.1], which fixes the issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:answer:*:*:*:*:*:*:*:*
Версия до 1.2.1 (исключая)

EPSS

Процентиль: 79%
0.01305
Низкий

3.1 Low

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 3.1
github
около 2 лет назад

Apache Answer Race Condition vulnerability

EPSS

Процентиль: 79%
0.01305
Низкий

3.1 Low

CVSS3

Дефекты

CWE-362