CVE-2022-1728

Allowing long password leads to denial of service in polonel/trudesk in GitHub repository polonel/trudesk prior to 1.2.2. This vulnerability can be abused by doing a DDoS attack for which genuine users will not able to access resources/applications.
Configurations

Configuration 1 (hide)

cpe:2.3:a:trudesk_project:trudesk:*:*:*:*:*:*:*:*

History

25 May 2022, 02:45

Type Values Removed Values Added
CPE cpe:2.3:a:trudesk_project:trudesk:*:*:*:*:*:*:*:*
References (CONFIRM) https://huntr.dev/bounties/3c6cb129-6995-4722-81b5-af052572b519 - (CONFIRM) https://huntr.dev/bounties/3c6cb129-6995-4722-81b5-af052572b519 - Exploit, Third Party Advisory
References (MISC) https://github.com/polonel/trudesk/commit/e836d04d16787c2c9c72e7bf011cf396d1f73c19 - (MISC) https://github.com/polonel/trudesk/commit/e836d04d16787c2c9c72e7bf011cf396d1f73c19 - Patch, Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 4.0
v3 : 6.5
CWE CWE-190
First Time Trudesk Project trudesk
Trudesk Project

16 May 2022, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2022-05-16 15:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-1728

Mitre link : CVE-2022-1728

CVE.ORG link : CVE-2022-1728


JSON object : View

Products Affected

trudesk_project

  • trudesk
CWE
CWE-190

Integer Overflow or Wraparound