Логотип exploitDog
bind:CVE-2024-7036
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-7036

Количество 2

Количество 2

nvd логотип

CVE-2024-7036

11 месяцев назад

A vulnerability in open-webui/open-webui v0.3.8 allows an unauthenticated attacker to sign up with excessively large text in the 'name' field, causing the Admin panel to become unresponsive. This prevents administrators from performing essential user management actions such as deleting, editing, or adding users. The vulnerability can also be exploited by authenticated users with low privileges, leading to the same unresponsive state in the Admin panel.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-wcwp-9rcp-jvfg

11 месяцев назад

Open WebUI Uncontrolled Resource Consumption vulnerability

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-7036

A vulnerability in open-webui/open-webui v0.3.8 allows an unauthenticated attacker to sign up with excessively large text in the 'name' field, causing the Admin panel to become unresponsive. This prevents administrators from performing essential user management actions such as deleting, editing, or adding users. The vulnerability can also be exploited by authenticated users with low privileges, leading to the same unresponsive state in the Admin panel.

CVSS3: 7.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-wcwp-9rcp-jvfg

Open WebUI Uncontrolled Resource Consumption vulnerability

CVSS3: 7.5
0%
Низкий
11 месяцев назад

Уязвимостей на страницу