_get_flag_ip_localdb in server/mhn/ui/utils.py in Modern Honey Network (MHN) through 2020-11-23 allows attackers to cause a denial-of-service via an IP address that is absent from a local geolocation database, because the code tries to uppercase a return value even if that value is not a string.
References
Link | Resource |
---|---|
https://github.com/pwnlandia/mhn/issues/799 | Exploit Third Party Advisory |
Configurations
Information
Published : 2020-11-24 16:15
Updated : 2020-12-03 06:13
NVD link : CVE-2020-29069
Mitre link : CVE-2020-29069
JSON object : View
CWE
Products Affected
modern_honey_network_project
- modern_honey_network