Логотип exploitDog
bind:CVE-2013-2254
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2013-2254

Количество 2

Количество 2

nvd логотип

CVE-2013-2254

больше 12 лет назад

The deepGetOrCreateNode function in impl/operations/AbstractCreateOperation.java in org.apache.sling.servlets.post.bundle 2.2.0 and 2.3.0 in Apache Sling does not properly handle a NULL value that returned when the session does not have permissions to the root node, which allows remote attackers to cause a denial of service (infinite loop) via unspecified vectors.

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-cxwh-vmhg-39r2

больше 3 лет назад

Improper Restriction of Operations within the Bounds of a Memory Buffer in Apache Sling

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2013-2254

The deepGetOrCreateNode function in impl/operations/AbstractCreateOperation.java in org.apache.sling.servlets.post.bundle 2.2.0 and 2.3.0 in Apache Sling does not properly handle a NULL value that returned when the session does not have permissions to the root node, which allows remote attackers to cause a denial of service (infinite loop) via unspecified vectors.

CVSS2: 5
1%
Низкий
больше 12 лет назад
github логотип
GHSA-cxwh-vmhg-39r2

Improper Restriction of Operations within the Bounds of a Memory Buffer in Apache Sling

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу