TWiki 4.0, 4.0.1, and 20010901 through 20040904 allows remote authenticated users with edit rights to cause a denial of service (infinite recursion leading to CPU and memory consumption) via INCLUDE by URL statements that form a loop, such as a page that includes itself.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2006-03-26T22:00:00
Updated: 2024-08-07T17:12:20.925Z
Reserved: 2006-03-24T00:00:00
Link: CVE-2006-1387
Vulnrichment
No data.
NVD
Status : Modified
Published: 2006-03-26T22:02:00.000
Modified: 2017-07-20T01:30:33.147
Link: CVE-2006-1387
Redhat
No data.