ZeroHour

CVE-2024-9823

CVSS 3.1
7.5 high
EPSS
<1%p59
Published
()
Modified
Description

There exists a security vulnerability in Jetty's DosFilter which can be exploited by unauthorized users to cause remote denial-of-service (DoS) attack on the server using DosFilter. By repeatedly sending crafted requests, attackers can trigger OutofMemory errors and exhaust the server's memory finally.

Vendors
eclipsenetapp
Products
jetty, bootstrap os, active iq unified manager
Weakness
CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.