ZeroHour

CVE-2023-51339

PoC
CVSS 3.1
6.5 medium
EPSS
<1%p50
Published
()
Modified
Description

A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Event Ticketing System v1.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.

Vendors
phpjabbers
Products
event ticketing system
Weakness
CWE-770
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.