CVE-2023-42457
plone.rest vulnerable to Denial of Service when ++api++ is used many times
Vexday Risk Score
21Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 7.5EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
21 set 2023Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
plone.rest allows users to use HTTP verbs such as GET, POST, PUT, DELETE, etc. in Plone. Starting in the 2.x branch and prior to versions 2.0.1 and 3.0.1, when the `++api++` traverser is accidentally used multiple times in a url, handling it takes increasingly longer, making the server less responsive. Patches are available in `plone.rest` 2.0.1 and 3.0.1. Series 1.x is not affected. As a workaround, one may redirect `/++api++/++api++` to `/++api++` in one's frontend web server (nginx, Apache).
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Produtos afetados
plone · plone.restQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://github.com/plone/plone.rest/commit/43b4a7e86206e237e1de5ca3817ed071575882f7https://github.com/plone/plone.rest/commit/77846a9842889b24f35e8bedc2e9d461388d3302https://github.com/plone/plone.rest/security/advisories/GHSA-h6rp-mprm-xgcqhttp://www.openwall.com/lists/oss-security/2023/09/22/2