TWiki 4.0, 4.0.1, and 20010901 through 20040904 allows remote authenticated users with edit rights to cause a denial of service (infinite recursion leading to CPU and memory consumption) via INCLUDE by URL statements that form a loop, such as a page that includes itself.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2006-03-26T22:00:00

Updated: 2024-08-07T17:12:20.925Z

Reserved: 2006-03-24T00:00:00

Link: CVE-2006-1387

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2006-03-26T22:02:00.000

Modified: 2017-07-20T01:30:33.147

Link: CVE-2006-1387

cve-icon Redhat

No data.