Lucene search

K
cvelist@huntrdevCVELIST:CVE-2022-3423
HistoryOct 07, 2022 - 12:00 a.m.

CVE-2022-3423 Allocation of Resources Without Limits or Throttling in nocodb/nocodb

2022-10-0700:00:00
CWE-770
@huntrdev
www.cve.org
2
allocation of resources
github repository
throttling
security vulnerability

CVSS3

7.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:H

EPSS

0.001

Percentile

31.9%

Allocation of Resources Without Limits or Throttling in GitHub repository nocodb/nocodb prior to 0.92.0.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "nocodb/nocodb",
    "vendor": "nocodb",
    "versions": [
      {
        "lessThan": "0.92.0",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:H

EPSS

0.001

Percentile

31.9%

Related for CVELIST:CVE-2022-3423