Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-70098
HistoryApr 29, 2022 - 12:00 a.m.

Zammad Denial of Service Vulnerability (CNVD-2022-70098)

2022-04-2900:00:00
China National Vulnerability Database
www.cnvd.org.cn
10

0.001 Low

EPSS

Percentile

38.4%

Zammad is a suite of ticket management software from Zammad Germany. v5.1.0 of Zammad suffers from a denial of service vulnerability that stems from a lack of rate limiting in the forgot password feature, which could be exploited by an attacker to potentially cause a denial of service (DoS) via a large number of reset requests.

CPENameOperatorVersion
zammad zammad veq5.1.0

0.001 Low

EPSS

Percentile

38.4%

Related for CNVD-2022-70098