An issue was discovered in OXID eShop Enterprise Edition before 5.3.7 and 6.x before 6.0.1. By entering specially crafted URLs, an attacker is able to bring the shop server to a standstill and hence, it stops working. This is only valid if OXID High Performance Option is activated and Varnish is used.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://oxidforge.org/en/security-bulletin-2018-001.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-02-19T21:00:00
Updated: 2024-08-05T05:40:51.173Z
Reserved: 2018-01-17T00:00:00
Link: CVE-2018-5763
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-02-19T21:29:00.333
Modified: 2024-11-21T04:09:20.970
Link: CVE-2018-5763
Redhat
No data.