Uncontrolled Resource Consumption vulnerability in MESbook 20221021.03 version. An unauthenticated remote attacker can use the "message" parameter to inject a payload with dangerous JavaScript code, causing the application to loop requests on itself, which could lead to resource consumption and disable the application.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-08-01T21:41:03.230Z

Reserved: 2024-07-01T09:36:53.436Z

Link: CVE-2024-6427

cve-icon Vulnrichment

Updated: 2024-08-01T21:41:03.230Z

cve-icon NVD

Status : Modified

Published: 2024-07-03T12:15:03.430

Modified: 2024-11-21T09:49:38.180

Link: CVE-2024-6427

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.