Количество 2
Количество 2
CVE-2019-5645
By sending a specially crafted HTTP GET request to a listening Rapid7 Metasploit HTTP handler, an attacker can register an arbitrary regular expression. When evaluated, this malicious handler can either prevent new HTTP handler sessions from being established, or cause a resource exhaustion on the Metasploit server.
GHSA-wp3v-g466-8g44
Regular expression denial of service in Rapid7 Metasploit
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-5645 By sending a specially crafted HTTP GET request to a listening Rapid7 Metasploit HTTP handler, an attacker can register an arbitrary regular expression. When evaluated, this malicious handler can either prevent new HTTP handler sessions from being established, or cause a resource exhaustion on the Metasploit server. | CVSS3: 7.5 | 88% Высокий | больше 5 лет назад | |
GHSA-wp3v-g466-8g44 Regular expression denial of service in Rapid7 Metasploit | CVSS3: 7.5 | 88% Высокий | почти 5 лет назад |
Уязвимостей на страницу