← volver
CVE-2015-10025

luelista miniConf URL Scanning MessageView.cs denial of service

CVSS 3.5 LOWEPSS 0.9%CWE-404
Vexday Risk Score
8Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 3.5EPSS 0.9%KEV nãoPoC Nuclei Metasploit Patch referenciado
Ciclo de vida
07 ene 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A vulnerability has been found in luelista miniConf up to 1.7.6 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file miniConf/MessageView.cs of the component URL Scanning. The manipulation leads to denial of service. Upgrading to version 1.7.7 and 1.8.0 is able to address this issue. The patch is named c06c2e5116c306e4e1bc79779f0eda2d1182f655. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-217615.
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Productos afectados
luelista · miniConf

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →