Логотип exploitDog
bind:CVE-2024-9340
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-9340

Количество 2

Количество 2

nvd логотип

CVE-2024-9340

11 месяцев назад

A Denial of Service (DoS) vulnerability in zenml-io/zenml version 0.66.0 allows unauthenticated attackers to cause excessive resource consumption by sending malformed multipart requests with arbitrary characters appended to the end of multipart boundaries. This flaw in the multipart request boundary processing mechanism leads to an infinite loop, resulting in a complete denial of service for all users. Affected endpoints include `/api/v1/login` and `/api/v1/device_authorization`.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-6gmf-2369-c76c

11 месяцев назад

ZenML unauthenticated DoS via Multipart Boundry

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-9340

A Denial of Service (DoS) vulnerability in zenml-io/zenml version 0.66.0 allows unauthenticated attackers to cause excessive resource consumption by sending malformed multipart requests with arbitrary characters appended to the end of multipart boundaries. This flaw in the multipart request boundary processing mechanism leads to an infinite loop, resulting in a complete denial of service for all users. Affected endpoints include `/api/v1/login` and `/api/v1/device_authorization`.

CVSS3: 7.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-6gmf-2369-c76c

ZenML unauthenticated DoS via Multipart Boundry

CVSS3: 7.5
0%
Низкий
11 месяцев назад

Уязвимостей на страницу