CVE-2023-30082
Summary
| CVE | CVE-2023-30082 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-06-14 20:15:00 UTC |
| Updated | 2023-06-28 20:31:00 UTC |
| Description | A denial of service attack might be launched against the server if an unusually lengthy password (more than 10000000 characters) is supplied using the osTicket application. This can cause the website to go down or stop responding. When a long password is entered, this procedure will consume all available CPU and memory. |
Risk And Classification
Problem Types: CWE-1284
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Enhancesoft | Osticket | 1.17.2 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVEs/CVE-2023-30082/Steps to reproduce.txt at main · manavparekh/CVEs · GitHub | MISC | github.com | |
| CVE-2023-30082 | MISC | blog.manavparekh.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.