| |
Vulnerability CVE-2020-6855
Published: 2020-02-06
Description: |
A large or infinite loop vulnerability in the JOC Cockpit component of SOS JobScheduler 1.11 and 1.13.2 allows attackers to parameterize housekeeping jobs in a way that exhausts system resources and results in a denial of service. |
Type:
CWE-835 (Loop with Unreachable Exit Condition ('Infinite Loop'))
CVSS2 => (AV:N/AC:L/Au:S/C:N/I:N/A:C)
CVSS Base Score |
Impact Subscore |
Exploitability Subscore |
6.8/10 |
6.9/10 |
8/10 |
Exploit range |
Attack complexity |
Authentication |
Remote |
Low |
Single time |
Confidentiality impact |
Integrity impact |
Availability impact |
None |
None |
Complete |
References: |
https://change.sos-berlin.com/browse/JITL-590
|
|
|
closedb();
?>
Copyright 2024, cxsecurity.com
|
|
|