8.6
CVE-2026-103102
- EPSS 0.32%
- Veröffentlicht 30.09.2026 02:29:04
- Zuletzt bearbeitet 05.10.2026 20:48:51
- Erkennungen
Pexip Infinity before 41.0 is affected by improper input validation in the signaling implementation which allows a remote attacker to trigger a software abort resulting in a denial of service. Exploitation of this issue requires accessing a gateway call from a WebRTC/API client.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Pexip ≫ Pexip Infinity Version < 41.0
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.32% | 0.226 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| MITRE | 8.6 | 3.9 | 4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
|
CWE-770 Allocation of Resources Without Limits or Throttling
The product allocates a reusable resource or group of resources on behalf of an actor without imposing any intended restrictions on the size or number of resources that can be allocated.
https://docs.pexip.com/admin/security_bulletins.htm