Typecho v1.3.0 was discovered to contain a race condition vulnerability in the post commenting function. This vulnerability allows attackers to post several comments before the spam protection checks if the comments are posted too frequently.
References
Configurations
No configuration.
History
21 Aug 2024, 14:35
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CWE | CWE-290 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
19 Aug 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-19 21:15
Updated : 2024-08-21 14:35
NVD link : CVE-2024-35539
Mitre link : CVE-2024-35539
CVE.ORG link : CVE-2024-35539
JSON object : View
Products Affected
No product.
CWE
CWE-290
Authentication Bypass by Spoofing