CVE-2022-34294

totd 1.5.3 uses a fixed UDP source port in upstream queries sent to DNS resolvers. This allows DNS cache poisoning because there is not enough entropy to prevent traffic injection attacks.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:totd_project:totd:1.5.3:*:*:*:*:*:*:*

Information

Published : 2022-08-15 05:15

Updated : 2022-08-17 13:16


NVD link : CVE-2022-34294

Mitre link : CVE-2022-34294


JSON object : View

CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Advertisement

dedicated server usa

Products Affected

totd_project

  • totd