PT-2019-12019 · Npm · Axios
Dinvlad
+7
·
Publicado
2019-05-07
·
Atualizado
2021-07-21
·
CVE-2019-10742
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
axios versions up to and including 0.18.0
Description
The issue allows attackers to cause a denial of service by continuing to accept content after the
maxContentLength is exceeded, potentially leading to high CPU usage.Recommendations
For axios versions up to and including 0.18.0, upgrade to 0.18.1 or later.
Exploit
Correção
DoS
Improper Handling of Exceptional Conditions
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Axios