ZeroHour

CVE-2020-6062

PoC
CVSS 3.1
7.5 high
EPSS
6%p93
Published
()
Modified
Description

An exploitable denial-of-service vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A specially crafted HTTP POST request can lead to server crash and denial of service. An attacker needs to send an HTTP request to trigger this vulnerability.

Vendors
coturn projectdebianfedoraprojectcanonical
Products
coturn, debian linux, fedora, ubuntu linux
Weakness
CWE-476
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news