Uncontrolled Resource Consumption vulnerability in MESbook 20221021.03 version. An unauthenticated remote attacker can use the "message" parameter to inject a payload with dangerous JavaScript code, causing the application to loop requests on itself, which could lead to resource consumption and disable the application.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47530 | Uncontrolled Resource Consumption vulnerability in MESbook 20221021.03 version. An unauthenticated remote attacker can use the "message" parameter to inject a payload with dangerous JavaScript code, causing the application to loop requests on itself, which could lead to resource consumption and disable the application. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-01T21:41:03.230Z
Reserved: 2024-07-01T09:36:53.436Z
Link: CVE-2024-6427
Updated: 2024-08-01T21:41:03.230Z
Status : Modified
Published: 2024-07-03T12:15:03.430
Modified: 2024-11-21T09:49:38.180
Link: CVE-2024-6427
No data.
OpenCVE Enrichment
No data.
EUVD