A partial DoS vulnerability has been detected in the Reports section, exploitable by a malicious authenticated user forcing a report to be saved with its name set as null.
The reports section will be partially unavailable for all later attempts to use it, with the report list seemingly stuck on loading.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://security.nozominetworks.com/NN-2023:6-01 |
History
Fri, 20 Sep 2024 13:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 20 Sep 2024 12:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-20 |
Fri, 20 Sep 2024 12:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-1286 |
MITRE
Status: PUBLISHED
Assigner: Nozomi
Published: 2023-08-09T09:05:16.765Z
Updated: 2024-09-20T12:07:25.358Z
Reserved: 2023-01-24T10:39:24.266Z
Link: CVE-2023-24015
Vulnrichment
Updated: 2024-08-02T10:49:08.818Z
NVD
Status : Modified
Published: 2023-08-09T10:15:09.890
Modified: 2024-11-21T07:47:15.730
Link: CVE-2023-24015
Redhat
No data.