Teamplus Pro community discussion function has an ‘allocation of resource without limits or throttling’ vulnerability. A remote attacker with general user privilege posting a thread with large content can cause the receiving client device to allocate too much memory, leading to abnormal termination of this client’s Teamplus Pro application.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-38112 Teamplus Pro community discussion function has an ‘allocation of resource without limits or throttling’ vulnerability. A remote attacker with general user privilege posting a thread with large content can cause the receiving client device to allocate too much memory, leading to abnormal termination of this client’s Teamplus Pro application.
Fixes

Solution

Contact tech support from TEAMPLUS.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2024-09-17T03:33:42.342Z

Reserved: 2022-07-05T00:00:00

Link: CVE-2022-35220

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-08-02T16:15:10.597

Modified: 2024-11-21T07:10:55.110

Link: CVE-2022-35220

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.