5

CVE-2004-2415

Davenport before 0.9.10 allows attackers to cause a denial of service (resource consumption) via (1) a very large XML file or (2) entity expansion attacks.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
DavenportDavenport Version0.8.0
DavenportDavenport Version0.9.0
DavenportDavenport Version0.9.5
DavenportDavenport Version0.9.6
DavenportDavenport Version0.9.7
DavenportDavenport Version0.9.8
DavenportDavenport Version0.9.9
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.55% 0.718
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/12337
Patch
Vendor Advisory
http://securitytracker.com/id?1011030
Patch
http://sourceforge.net/mailarchive/forum.php?thread_id=5385243&forum_id=33977
http://sourceforge.net/project/shownotes.php?release_id=262497
Patch
http://www.osvdb.org/9105
Patch
http://www.securityfocus.com/bid/11001
Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/17062