Allowing long password leads to denial of service in polonel/trudesk in GitHub repository polonel/trudesk prior to 1.2.2. This vulnerability can be abused by doing a DDoS attack for which genuine users will not able to access resources/applications.
References
Link | Resource |
---|---|
https://huntr.dev/bounties/3c6cb129-6995-4722-81b5-af052572b519 | Exploit Third Party Advisory |
https://github.com/polonel/trudesk/commit/e836d04d16787c2c9c72e7bf011cf396d1f73c19 | Patch Third Party Advisory |
Configurations
Information
Published : 2022-05-16 08:15
Updated : 2022-05-24 19:45
NVD link : CVE-2022-1728
Mitre link : CVE-2022-1728
JSON object : View
CWE
CWE-190
Integer Overflow or Wraparound
Products Affected
trudesk_project
- trudesk