4.3
CVE-2013-4599
- EPSS 1.34%
- Veröffentlicht 09.06.2014 19:55:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
The Misery module 6.x-2.x before 6.x-2.5 and 7.x-2.x before 7.x-2.2 for Drupal, when the "delay misery" configuration is set to a high value, allows remote attackers to cause a denial of service (process consumption) via multiple requests.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Misery Project ≫ Misery Version6.x-2.0 Update- Edition- SwEdition- SwPlatformdrupal
Misery Project ≫ Misery Version6.x-2.1 Update- Edition- SwEdition- SwPlatformdrupal
Misery Project ≫ Misery Version6.x-2.2 Update- Edition- SwEdition- SwPlatformdrupal
Misery Project ≫ Misery Version6.x-2.3 Update- Edition- SwEdition- SwPlatformdrupal
Misery Project ≫ Misery Version6.x-2.4 Update- Edition- SwEdition- SwPlatformdrupal
Misery Project ≫ Misery Version7.x-2.0 Update- Edition- SwEdition- SwPlatformdrupal
Misery Project ≫ Misery Version7.x-2.1 Update- Edition- SwEdition- SwPlatformdrupal
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.34% | 0.675 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:P
|
http://seclists.org/oss-sec/2013/q4/317
http://www.securityfocus.com/bid/63705
https://drupal.org/node/2134409
https://drupal.org/node/2134413
https://drupal.org/node/2135273