ID |
CVE-2020-1722
|
Sažetak |
A flaw was found in all ipa versions 4.x.x through 4.8.0. When sending a very long password (>= 1,000,000 characters) to the server, the password hashing process could exhaust memory and CPU leading to a denial of service and the website becoming unresponsive. The highest threat from this vulnerability is to system availability. |
Reference |
|
CVSS |
Base: | 5.4 |
Impact: | 6.9 |
Exploitability: | 4.9 |
|
Pristup |
Vektor | Složenost | Autentikacija |
NETWORK |
HIGH |
NONE |
|
Impact |
Povjerljivost | Cjelovitost | Dostupnost |
NONE |
NONE |
COMPLETE |
|
CVSS vektor |
AV:N/AC:H/Au:N/C:N/I:N/A:C |
Zadnje važnije ažuriranje |
12-02-2023 - 23:40 |
Objavljeno |
27-04-2020 - 21:15 |