7.8

CVE-2014-7266

Algorithmic complexity vulnerability in Cybozu Remote Service Manager through 2.3.0 and 3.x through 3.1.2 allows remote attackers to cause a denial of service (CPU consumption) via vectors that trigger colliding hash-table keys.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1983.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CybozuRemote Service Manager Version2.3.0
CybozuRemote Service Manager Version3.1.0
CybozuRemote Service Manager Version3.1.1
CybozuRemote Service Manager Version3.1.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.8% 0.756
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://jvn.jp/en/jp/JVN13566542/index.html
Vendor Advisory
http://jvndb.jvn.jp/jvndb/JVNDB-2015-000001
Vendor Advisory
https://cs.cybozu.co.jp/2015/001245.html
Patch
Vendor Advisory