Teamplus Pro community discussion has an ‘allocation of resource without limits or throttling’ vulnerability on thread subject field. A remote attacker with general user privilege posting a thread subject with large content can cause the server to allocate too much memory, leading to missing partial post content and disrupt partial service.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-38113 Teamplus Pro community discussion has an ‘allocation of resource without limits or throttling’ vulnerability on thread subject field. A remote attacker with general user privilege posting a thread subject with large content can cause the server to allocate too much memory, leading to missing partial post content and disrupt partial service.
Fixes

Solution

Contact tech support from TEAMPLUS.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2024-09-16T22:55:47.003Z

Reserved: 2022-07-05T00:00:00

Link: CVE-2022-35221

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-08-02T16:15:10.707

Modified: 2024-11-21T07:10:55.227

Link: CVE-2022-35221

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.