PT-2022-11599 · Owasp · Owasp Nodegoat
Rcowsill
·
Published
2022-12-18
·
Updated
2022-12-22
·
CVE-2021-4247
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
OWASP NodeGoat (affected versions not specified)
Description
A problematic issue has been found in the Query Parameter Handler component, specifically affecting the file app/routes/research.js. This issue leads to denial of service and can be initiated remotely.
Recommendations
Apply a patch to fix this issue. The patch is identified by the name 4a4d1db74c63fb4ff8d366551c3af006c25ead12. As a temporary workaround, consider restricting access to the vulnerable component until the patch is applied.
Exploit
Fix
Improper Resource Release
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Owasp Nodegoat