Lucene search

K
cveJpcertCVE-2024-23304
HistoryFeb 06, 2024 - 5:15 a.m.

CVE-2024-23304

2024-02-0605:15:10
CWE-426
jpcert
web.nvd.nist.gov
16
cybozu
kunai
android
cve-2024-23304
denial of service
dos
nvd

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

34.9%

Cybozu KUNAI for Android 3.0.20 to 3.0.21 allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by performing certain operations.

Affected configurations

Nvd
Vulners
Node
cybozukunaiMatch3.0.20android
OR
cybozukunaiMatch3.0.21android
VendorProductVersionCPE
cybozukunai3.0.20cpe:2.3:a:cybozu:kunai:3.0.20:*:*:*:*:android:*:*
cybozukunai3.0.21cpe:2.3:a:cybozu:kunai:3.0.21:*:*:*:*:android:*:*

CNA Affected

[
  {
    "vendor": "Cybozu, Inc.",
    "product": "Cybozu KUNAI for Android",
    "versions": [
      {
        "version": "3.0.20 to 3.0.21",
        "status": "affected"
      }
    ]
  }
]

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

34.9%

Related for CVE-2024-23304