Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31003
HistoryJun 18, 2021 - 7:36 a.m.

Denial Of Service

2021-06-1807:36:56
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6
denial of service
opencast-kernel
insecure processing
single http request
xml parsing vulnerability

EPSS

0.001

Percentile

31.9%

opencast-kernel is vulnerable to denial of service. The vulnerability exists due to an insecure processing of a single HTTP request to parse XML through the system, causing it to expand a .crafted string 100,000 times causing the system to hang.

EPSS

0.001

Percentile

31.9%