We found results for “”
WS-2016-0026
Good to know:
Date: January 15, 2016
There is a potential memory disclosure and DoS vulnerability in mongoose from 3.5.5 before 3.8.36 and from 4.0.0 before 4.3.6.
Language: Java
Severity Score
Severity Score
Weakness Type (CWE)
Uncontrolled Resource Consumption
CWE-400Top Fix
Upgrade Version
Upgrade to version reactorcoder/symfony2-nodesocket - no_fix;reactorcoder/symfony2-nodesocket - stable;tiitoo/symfony3-nodesjssocket - no_fix;tiitoo/symfony3-nodesjssocket - stable;mongoose - 4.3.6;org.webjars.npm:mongoose:5.0.0-rc2
CVSS v3.1
| Base Score: |
|
|---|---|
| Attack Vector (AV): | NETWORK |
| Attack Complexity (AC): | LOW |
| Privileges Required (PR): | NONE |
| User Interaction (UI): | NONE |
| Scope (S): | UNCHANGED |
| Confidentiality (C): | LOW |
| Integrity (I): | LOW |
| Availability (A): | LOW |
Vulnerabilities
Projects
Contact Us


