Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 10

Количество 10

fstec логотип

BDU:2024-02584

почти 3 года назад

Уязвимость брокера сообщений RabbitMQ, связанная с отсутствием ограничение HTTP API на размер тела HTTP-запроса, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
EPSS: Низкий
redos логотип

ROS-20240402-18

больше 2 лет назад

Уязвимость rabbitmq-server

CVSS3: 4.9
EPSS: Низкий
ubuntu логотип

CVE-2023-46118

почти 3 года назад

RabbitMQ is a multi-protocol messaging and streaming broker. HTTP API did not enforce an HTTP request body limit, making it vulnerable for denial of service (DoS) attacks with very large messages. An authenticated user with sufficient credentials can publish a very large messages over the HTTP API and cause target node to be terminated by an "out-of-memory killer"-like mechanism. This vulnerability has been patched in versions 3.11.24 and 3.12.7.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2023-46118

почти 3 года назад

RabbitMQ is a multi-protocol messaging and streaming broker. HTTP API did not enforce an HTTP request body limit, making it vulnerable for denial of service (DoS) attacks with very large messages. An authenticated user with sufficient credentials can publish a very large messages over the HTTP API and cause target node to be terminated by an "out-of-memory killer"-like mechanism. This vulnerability has been patched in versions 3.11.24 and 3.12.7.

CVSS3: 4.9
EPSS: Низкий
nvd логотип

CVE-2023-46118

почти 3 года назад

RabbitMQ is a multi-protocol messaging and streaming broker. HTTP API did not enforce an HTTP request body limit, making it vulnerable for denial of service (DoS) attacks with very large messages. An authenticated user with sufficient credentials can publish a very large messages over the HTTP API and cause target node to be terminated by an "out-of-memory killer"-like mechanism. This vulnerability has been patched in versions 3.11.24 and 3.12.7.

CVSS3: 4.9
EPSS: Низкий
msrc логотип

CVE-2023-46118

около 2 лет назад

CVSS3: 4.9
EPSS: Низкий
debian логотип

CVE-2023-46118

почти 3 года назад

RabbitMQ is a multi-protocol messaging and streaming broker. HTTP API ...

CVSS3: 4.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4939-1

больше 2 лет назад

Security update for rabbitmq-server

EPSS: Низкий
github логотип

GHSA-w6cq-9cf4-gqpg

почти 3 года назад

Denial of Service by publishing large messages over the HTTP API

CVSS3: 4.9
EPSS: Низкий
suse-cvrf логотип

SUSE-FU-2024:2078-1

около 2 лет назад

Feature update for rabbitmq-server313, erlang26, elixir115

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-02584

Уязвимость брокера сообщений RabbitMQ, связанная с отсутствием ограничение HTTP API на размер тела HTTP-запроса, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
1%
Низкий
почти 3 года назад
redos логотип
ROS-20240402-18

Уязвимость rabbitmq-server

CVSS3: 4.9
1%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2023-46118

RabbitMQ is a multi-protocol messaging and streaming broker. HTTP API did not enforce an HTTP request body limit, making it vulnerable for denial of service (DoS) attacks with very large messages. An authenticated user with sufficient credentials can publish a very large messages over the HTTP API and cause target node to be terminated by an "out-of-memory killer"-like mechanism. This vulnerability has been patched in versions 3.11.24 and 3.12.7.

CVSS3: 4.9
1%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-46118

RabbitMQ is a multi-protocol messaging and streaming broker. HTTP API did not enforce an HTTP request body limit, making it vulnerable for denial of service (DoS) attacks with very large messages. An authenticated user with sufficient credentials can publish a very large messages over the HTTP API and cause target node to be terminated by an "out-of-memory killer"-like mechanism. This vulnerability has been patched in versions 3.11.24 and 3.12.7.

CVSS3: 4.9
1%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-46118

RabbitMQ is a multi-protocol messaging and streaming broker. HTTP API did not enforce an HTTP request body limit, making it vulnerable for denial of service (DoS) attacks with very large messages. An authenticated user with sufficient credentials can publish a very large messages over the HTTP API and cause target node to be terminated by an "out-of-memory killer"-like mechanism. This vulnerability has been patched in versions 3.11.24 and 3.12.7.

CVSS3: 4.9
1%
Низкий
почти 3 года назад
msrc логотип
CVSS3: 4.9
1%
Низкий
около 2 лет назад
debian логотип
CVE-2023-46118

RabbitMQ is a multi-protocol messaging and streaming broker. HTTP API ...

CVSS3: 4.9
1%
Низкий
почти 3 года назад
suse-cvrf логотип
SUSE-SU-2023:4939-1

Security update for rabbitmq-server

1%
Низкий
больше 2 лет назад
github логотип
GHSA-w6cq-9cf4-gqpg

Denial of Service by publishing large messages over the HTTP API

CVSS3: 4.9
1%
Низкий
почти 3 года назад
suse-cvrf логотип
SUSE-FU-2024:2078-1

Feature update for rabbitmq-server313, erlang26, elixir115

около 2 лет назад

Уязвимостей на страницу