Allowing long password leads to denial of service in polonel/trudesk in GitHub repository polonel/trudesk prior to 1.2.2. This vulnerability can be abused by doing a DDoS attack for which genuine users will not able to access resources/applications.
References
Link | Resource |
---|---|
https://github.com/polonel/trudesk/commit/e836d04d16787c2c9c72e7bf011cf396d1f73c19 | Patch Third Party Advisory |
https://huntr.dev/bounties/3c6cb129-6995-4722-81b5-af052572b519 | Exploit Third Party Advisory |
https://github.com/polonel/trudesk/commit/e836d04d16787c2c9c72e7bf011cf396d1f73c19 | Patch Third Party Advisory |
https://huntr.dev/bounties/3c6cb129-6995-4722-81b5-af052572b519 | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 06:41
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/polonel/trudesk/commit/e836d04d16787c2c9c72e7bf011cf396d1f73c19 - Patch, Third Party Advisory | |
References | () https://huntr.dev/bounties/3c6cb129-6995-4722-81b5-af052572b519 - Exploit, Third Party Advisory |
Information
Published : 2022-05-16 15:15
Updated : 2024-11-21 06:41
NVD link : CVE-2022-1728
Mitre link : CVE-2022-1728
CVE.ORG link : CVE-2022-1728
JSON object : View
Products Affected
trudesk_project
- trudesk
CWE
CWE-190
Integer Overflow or Wraparound