Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-33611

Опубликовано: 22 апр. 2026
Источник: nvd
CVSS3: 6.5
CVSS3: 4.9
EPSS Низкий

Описание

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:powerdns:authoritative:*:*:*:*:*:*:*:*
Версия от 4.9.0 (включая) до 4.9.14 (исключая)
cpe:2.3:a:powerdns:authoritative:*:*:*:*:*:*:*:*
Версия от 5.0.0 (включая) до 5.0.4 (исключая)

EPSS

Процентиль: 35%
0.00423
Низкий

6.5 Medium

CVSS3

4.9 Medium

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 6.5
ubuntu
4 месяца назад

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.

CVSS3: 6.5
debian
4 месяца назад

An operator allowed to use the REST API can cause the Authoritative se ...

CVSS3: 6.5
github
4 месяца назад

An operator allowed to use the REST API can cause the Authoritative server to produce invalid HTTPS or SVCB record data, which can in turn cause LMDB database corruption, if using the LMDB backend.

EPSS

Процентиль: 35%
0.00423
Низкий

6.5 Medium

CVSS3

4.9 Medium

CVSS3

Дефекты

CWE-190