CVE-2024-6427

CVSS V2 None CVSS V3 None
Description
Uncontrolled Resource Consumption vulnerability in MESbook 20221021.03 version. An unauthenticated remote attacker can use the "message" parameter to inject a payload with dangerous JavaScript code, causing the application to loop requests on itself, which could lead to resource consumption and disable the application.
Overview
  • CVE ID
  • CVE-2024-6427
  • Assigner
  • INCIBE
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-07-03T11:53:15.828Z
  • Last Modified Date
  • 2024-07-03T20:02:52.626Z
History
Created Old Value New Value Data Type Notes
2024-07-04 13:05:45 Added to TrackCVE