Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Lasse Wolter

#37377of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2021-20342
7.5
2021-06-03
Luca · Luca · CVE-2021-33840
Name of the Vulnerable Software and Affected Versions: Luca versions 1.1.14 and earlier Description: The issue allows remote attackers to cause a denial of service by inserting many fake records related to COVID-19. This is because Phone Number data lacks a digital signature. Recommendations: For versions 1.1.14 and earlier, consider implementing digital signatures for Phone Number data to prevent the insertion of fake records. As a temporary workaround, restrict access to the server to minimize the risk of exploitation.