Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-05029
HistoryDec 19, 2021 - 12:00 a.m.

CbioPortal Denial of Service Vulnerability

2021-12-1900:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
cbioportal
denial of service
vulnerability
large-scale cancer genomics
regular expressions
attackers
ad-hoc requests
cnvd

EPSS

0.001

Percentile

46.2%

CbioPortal is used to provide visualization, analysis, and download of large-scale cancer genomics datasets. a denial-of-service vulnerability exists in CbioPortal in versions 3.6.21 and earlier, which stems from the insecure handling of regular expressions in /ProteinArraySignificanceTest.json, and can be exploited by attackers to ad-hoc requests to trigger a denial-of-service attack.

EPSS

0.001

Percentile

46.2%

Related for CNVD-2022-05029