Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-1000189

Опубликовано: 17 нояб. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

nodejs ejs version older than 2.5.5 is vulnerable to a denial-of-service due to weak input validation in the ejs.renderFile()

РелизСтатусПримечание
bionic

not-affected

2.5.7-1
devel

not-affected

esm-apps/bionic

not-affected

2.5.7-1
esm-apps/focal

not-affected

esm-apps/jammy

not-affected

focal

not-affected

impish

not-affected

jammy

not-affected

upstream

released

2.5.7-1

Показывать по

EPSS

Процентиль: 75%
0.00913
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 4.7
redhat
около 9 лет назад

nodejs ejs version older than 2.5.5 is vulnerable to a denial-of-service due to weak input validation in the ejs.renderFile()

CVSS3: 7.5
nvd
около 8 лет назад

nodejs ejs version older than 2.5.5 is vulnerable to a denial-of-service due to weak input validation in the ejs.renderFile()

CVSS3: 7.5
debian
около 8 лет назад

nodejs ejs version older than 2.5.5 is vulnerable to a denial-of-servi ...

CVSS3: 7.5
github
почти 8 лет назад

ejs vulnerable to DoS due to weak input validation

EPSS

Процентиль: 75%
0.00913
Низкий

5 Medium

CVSS2

7.5 High

CVSS3